Several US military branches have switched off advertising identifiers and tracking permissions on government-issued phones and tablets, after warnings that commercially available location data was being used to fix the positions of American personnel in the Middle East. Letters confirming the change put an official stamp on a problem that researchers have been describing for most of a decade.
The mechanism is not exotic. It is the ordinary functioning of the advertising industry.
How the Pipeline Actually Works
A weather app, a game, or a prayer-times app embeds a software development kit from an advertising or analytics company. The kit collects the device’s advertising identifier along with position, and sometimes with Bluetooth and Wi-Fi neighbours. That flows into real-time bidding, where an ad slot is auctioned in milliseconds and the bid request, containing device identifier and coarse or precise location, is broadcast to dozens or hundreds of potential bidders. Anyone entitled to receive bid requests sees the data whether or not they ever place a bid.
From there it reaches brokers who aggregate, deduplicate, and resell. The finished product is a table of identifiers and coordinates over time, and it is sold to marketers, hedge funds, law enforcement, and to anyone who can produce a plausible business front and a credit card.
Why It Is a Targeting Problem
Individual points are close to worthless. Patterns are not. Filter a dataset to a known coordinate box, keep every identifier that appears there repeatedly at night, and you have a residency list for a facility. Follow those identifiers outward and you get commuting routes, alternate housing, off-base habits, and the family addresses of people who work there. None of this requires a single line of code to be broken. It requires a purchase order.
The published precedents are a decade old. A fitness app’s public heat map traced perimeter running routes at bases that were not on any public list. Dating apps have exposed personnel by proximity. What has changed is the buyer. When the customer is a state adversary or an armed group with a sponsor, the output is not a marketing segment. It is a target package.
What Disabling Trackers Does Not Fix
Turning off the advertising identifier on issued hardware is worth doing and it addresses maybe a third of the exposure. The rest sits outside the perimeter:
- Personal phones, which every service member carries and which no order can effectively sanitise.
- Family devices at home addresses, which reveal the same patterns from the other end.
- Contractor and vendor devices moving in and out of the same facilities on commercial terms.
- Cars, watches, fitness trackers, and telematics, all of which report position over channels that have nothing to do with mobile advertising.
- The historical data already sold, which cannot be recalled and which ages slowly, because bases, routes, and housing do not move.
The Structural Point
This is a supply problem being addressed with demand-side hygiene. As long as it is lawful in the United States to buy bulk location data on Americans, the market that produces targeting-grade information on soldiers will keep operating, and the only variable is which end of it a foreign service chooses to buy from. Device policy is a mitigation. The commercial data market is the vulnerability, and nothing announced this week touches it.