Jump to content

Sampei.Nihira

Member
  • Posts

    1,283
  • Joined

  • Last visited

  • Days Won

    30
  • Donations

    0.00 USD 
  • Country

    Italy

Everything posted by Sampei.Nihira

  1. I tried installing the ABprime extension: https://interlink-addons.binaryoutcast.com/addon/abprime/ in MailNews. It installs but I don't display any options: Does this happen to you?
  2. Interesting news. Please consider carefully to have installed in your OS Windows XP in addition to this software also NET FW 4.0.3 (release date 2012). NET FWs also suffer, unfortunately, from vulnerabilities to be patched: https://www.cvedetails.com/product/2002/Microsoft-.net-Framework.html?vendor_id=26 I decided a few years ago to uninstall all versions of NET FW from my OS. No problem, but obviously I can't use some softwares that require them.
  3. Forgive the disturbance friends, just yesterday 0Patch has published the fix for a vulnerability that also affects I.E.9: https://blog.0patch.com/2021/05/micropatch-for-remote-code-execution.html https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-26419 The patch on Microsoft Update Catalog is KB5003165.
  4. Probably within a short time there will be an update: https://github.com/gorhill/uBlock-for-firefox-legacy/issues/304 Hopefully.
  5. Next time you want to uninstall software give a try to IOBitUnistaller Portable: https://portableapps.com/apps/utilities/iobit_uninstaller_portable which also allows you to clean the registry. Obviously, before cleaning the registry, check what the software will delete.
  6. I will answer you by integrating some info that has already been written: https://www.ghacks.net/2021/05/14/custom-browser-protocol-handlers-may-be-used-for-fingerprinting/ Let's take the case of Zoom: the videoconferencing application configures and uses the URL zoommtg://. If you click on the browser side on an address starting with this prefix, Zoom will open immediately and automatically. I chose Zoom because it was recently brought to attention in this very thread. With Skype it's the same: https://github.com/fingerprintjs/external-protocol-flooding If the mechanism is based on javascripts it is obvious that the control of the scripts allows to put it out of play Martin also writes what I have already written: P.S. If we reduce the surface of attack, proportionally we will have less possibility of attack on the privacy or security side. The contraindication is of course the lack of functionality.
  7. It is not possible to claim that Linux/Android are a mitigation to the bug. Instead it is correct to say that the test fails. The developer states that the test succeeds with Ubuntu 20.04: https://github.com/fingerprintjs/external-protocol-flooding The mitigations to the bug are those that I have already cited, therefore a script-blocker.
  8. If for that matter, it doesn't even work in Android. But that's OT in this thread No surprise. Unfortunately, the bugs are there and always will be. We must do our best to take care of privacy and security, without becoming paranoid.
  9. Vulnerability affects many browsers. P.S. If you like you can put the test to the attention of W members.
  10. NM28 + Noscript: Schemeflood.com script allowed temporarily: image hosting
  11. @nicolaasjan If you change browsers the identifier should remain the same. This is at least the intention of the test developer. We take every precaution possible (Noscript.....etc......) to protect our privacy.
  12. I continue the discussion regarding privacy that I started in the UBO thread. Unfortunately, some websites will try very hard to violate your privacy. And this task of theirs will often be facilitated by using very popular and well-known browsers. This test below shows that: https://schemeflood.com/ With our browsers this task is more difficult, but possible.
  13. I've been using this privacy-protecting setting for years without any problems. Raymond Hill also writes about this feature: https://github.com/gorhill/uBlock/wiki/Dashboard:-Settings#block-csp-reports P.S. I have the first dose of vaccine (Moderna) on May 29, my wife who is only 4 years younger than me, on June 16 (Pfizer). In my region, "young" people have to book online. This afternoon, for example, they are opening reservations for people born in 1968 - 1969. Tomorrow 1970 - 1971.................etc....etc....
  14. https://forum.palemoon.org/viewtopic.php?f=5&t=26037&p=206992&hilit=jpeg+XL#p206992 https://www.ghacks.net/2021/05/11/find-out-if-your-browser-supports-the-new-image-format-jpeg-xl/ It would be interesting to know if our browsers will update to the new standard.
  15. It is preferable not to let an extension do the work when you can do the same with the browser settings. https://armin.dev/apps/ping-spotter/ MSFN members using NM28 have ping disabled by default. Check: about:config browser.send_pings set to false (default) It is not necessary to have enabled in UBO - Setting -Privacy Disable hyperlink auditing. For the CSP report block just set: about:config security.csp.enable set to false It is not necessary to have enabled in UBO - Setting -Privacy: block CSP reports To disable Beacon API you need to: about:config beacon.enabled set to false
  16. I have replaced all the files in the 7z folder in Bandizip with the files from the v.7-Zip v21.02 alpha (May 6, 2021).
  17. Out True Burner v.7.4 (Released May 5, 2021) https://www.glorylogic.com/true-burner.html
  18. Did some tests by changing DNS always with Android Opera, same conditions: ControlD = 100% Quad9 = 69% Adguard = 63% Cloudflare = 65% Cleanbrowsing = 63 % https://d3ward.github.io/toolz/src/adblock.html
  19. My XP is up to date. Updated certificates No problem in the website you indicate:
  20. After many tests on the PC I tried to configure the private DNS with ControlD: https://controld.com/ DNS-over-TLS must be used: p2.freedns.controld.com (Block Malware + Ads) on my Android smartphone https://www.smartphones.how/internet/private-dns-mode-android Do some tests for the ads blocker. In my opinion it's really OK.
  21. Pale Moon 29.2.0 does not block third-party themes. The info written in the official forum,are obviously wrong. mood did a test with a third-party theme (thunderbird) that I provided: https://www.wilderssecurity.com/threads/pale-moon-releases.390133/page-10#post-3003661 The third-party theme obviously installs successfully in NM28 as well. I cannot test with NM27.
×
×
  • Create New...