Header Enrichment or ISP Enrichment: Emerging Privacy Threats in Mobile Networks

HTTP header enrichment allows mobile operators to annotate HTTP connections via the use of a wide range of request headers. Operators employ proxies to introduce suchheaders for operational purposes, and—as recently widelypublicized—also to assist advertising programs in identifying the subscriber responsible for the originating traffic,with significant consequences for the user’s privacy. In thispaper, we use data collected by the Netalyzr network troubleshooting service over 16 months to identify and characterize HTTP header enrichment in modern mobile networks.We present a timeline of HTTP header usage for 299 mobileservice providers from 112 countries, observing three maincategories: (1) unique user and device identifiers (e.g., IMEIand IMSI), (2) headers related to advertising programs, and(3) headers associated with network operations.


