Security, Privacy, and Consumer Protection
The goal of this assignment is to understand how your web activity can be tracked using your DNS queries. To do so, you will visit a website of your choice and log all DNS queries made by your browser. Try to pick a popular website (nytimes, facebook, reddit, etc) that you have not visited in a while. Please answer the following questions in your write-up. For simplicity, assume that all caches are empty and you are browsing on the UChicago network.
Who (i.e., what companies) can see that you've visited the website based on unencrypted DNS queries?
Beyond DNS queries, name all other entities that know you've visited the website. Present your findings by grouping your domain names into companies (e.g., the company "Google" has many domain names). Explain how these companies may have visited the website.
What different types of concerns might you have about the above companies knowing this information (concerns may differ by company!).
Hint: If you'd like, install Warp, a DNS tool from Cloudflare. It may be more comprehensible than the Wireshark output.