Single-Pixel Tracker Leads Paranoid Turkish Authorities To Wrongly Accuse Over 10,000 People Of Treason

from the tiny-web-beacons,-massive-consequences dept

We've written many articles about the thin-skinned Turkish president, Recep Tayyip Erdoğan, and his massive crackdown on opponents, real or imagined, following the failed coup attempt in 2016. Boing Boing points us to a disturbing report on the Canadian CBC News site revealing how thousands of innocent citizens have ended up in prison because they were falsely linked with the encrypted messaging app Bylock:

The Turkish government under President Recep Tayyip Erdogan links Bylock with treason, because of the app's alleged connection to followers of Fethullah Gülen, the man the Turkish government believes is behind the deadly 2016 coup attempt. Gülen denies the allegations.

Alleged Bylock users are a large part of the nearly 150,000 Turks detained, arrested or forced from their jobs under state of emergency decrees since the summer of 2016.

An estimated 30,000 are believed to be among the innocent swept up in this particular campaign, victims of the chaos, confusion and fear in Turkey.

It's bad enough that the Turkish authorities are equating the mere use of the Bylock app with treason. But it gets worse. It turns out that many of those arrested for that reason didn't even use Bylock, but were falsely accused:

it was due to a single line of code, which created a window "one pixel high, one pixel wide" -- essentially invisible to the human eye -- to Bylock.net. Hypothetically, people could be accused of accessing the site without having knowingly viewed it.

That line redirected people to the Bylock server using several other applications, including a Spotify-like music app called Freezy and apps to look up prayer times or find the direction of Mecca. Some people have been accused because someone they shared a wifi connection with was linked to Bylock.

According to the CBC News report, the single-pixel trackers that linked back to Bylock.net were used intentionally by the Bylock developers in order to muddy the waters, and make it harder to identify real Bylock users. However, it's not clear how these Web "beacons" came to be associated with other apps. Whatever the mechanism used to accuse innocent people, the Turkish authorities have confirmed indirectly that the misleading calls to Bylock.net did indeed take place, albeit releasing that information in a way that violates the victims' privacy pretty badly:

The Turkish government and the country's courts rarely admit they are wrong, but in December, they revealed the gravity of the mistake they'd made by publishing a list of 11,480 mobile phone numbers. Each number represented a person wrongly accused of terrorism in the Bylock affair.

As well as confirming that Turkey remains in the grip of institutionalized paranoia emanating from the country's president, this episode underlines just how serious the implications of single-pixel tracking can be. In an ideal world, such surreptitious tracking would not be taking place. As a second best, browsers would incorporate technology that warned users of such tricks and blocked their callbacks as a matter of course, but it's hard to see how this could be done in a way that isn't easily circumvented.

Follow me @glynmoody on Twitter or identi.ca, and +glynmoody on Google+

Filed Under: bylock, evidence, pixel, tracking, treason, turkey


Reader Comments

Subscribe: RSS

View by: Time | Thread


  1. identicon
    Turk here, 7 Feb 2018 @ 2:17pm

    Re: Re: Re:

    You can`t compare a person like Stalin who killed millions of his own people and millions of none Russians with gulen or Erdogan. Or with that propaganda Trotsky.

    It`s correct that Erdogan/akp was allied with gulen and his followers. They did that to take down the army`s hold over the government. Something the west also demanded from Turkey. Civilian rule not a military one.
    That alliance broke up when the government realized that gulen was putting his own followers inside the army high command.
    I followed the probe against the the army. Files were full with errors like wrong dates, places or buildings that didn't exist until after the criminal offenses were committed. All those arrested in the probe are released, got money for time spend in prison and missed promotions.

    Coup
    2 weeks before the coup, i saw a news report on tv, that the army would be purged of gulens followers. It was stupid to release that information.
    After that the gulenist had 2 options. Do nothing and get arrested. Or do a last stand and take over the army and with that the country.
    The coup failed because the mit(Turkish fbi)hacked the bylock server and knew of the coup. So they had to rush the operation. The day the coup was going to happen one of those gulenist got caught and they could follow the operation trough whatsapp group chats. If the civilians didn't take to the streets, coup would have been successful.

    https://www.bellingcat.com/news/mena/2016/07/24/the-turkey-coup-through-the-eyes-of-its-p lotters/
    Western source about the coup. Worth reading, they fact check everything.

    It`s complicated and everyone in Turkey wants it to be over. You can dismiss what i said as pro government propaganda. Thats up to you. All i and millions of Turks want is a stable Turkey.

Add Your Comment

Have a Techdirt Account? Sign in now. Want one? Register here



Subscribe to the Techdirt Daily newsletter




Comment Options:

  • Use markdown. Use plain text.
  • Remember name/email/url (set a cookie)

Follow Techdirt
Special Affiliate Offer

Essential Reading
Techdirt Insider Chat
Recent Stories

This site, like most other sites on the web, uses cookies. For more information, see our privacy policy. Got it
Close

Email This

This feature is only available to registered users. Register or sign in to use it.