Hi guy

  • 0 Posts
  • 17 Comments
Joined 1 year ago
cake
Cake day: June 12th, 2023

help-circle


  • FF doesn’t really enable full fingerprint resistance by default. But it can.

    These settings are some of what I usually use. All fingerprint values (that are able to be are randomised on every reload of a page.

    Set secutity setting to custom, select known AND suspected fingerprinting > select from dropdown ‘In ALL tabs’

    Also: Because it’s of no value / use to me, and (IMHO) a giant gaping privacy and security issue, I also disable webgl and webrtc, and navigator completely in about:config

    Set the following:

    WebGL webgl.disabled true
    WebGL2 webgl.enable-webgl2 false
    WebRTC media.peerconnection.enabled false
    Navigator media.navigator.enabled false
    RFP privacy.resistFingerprinting true

    RFP options like bounce protection etc can also be enabled in config.

    Check fingerprints on browserleaks.com, coveryourtracks.EFF.org, etc

    Should be 100% unique fingerprint every time.







  • A wireless/ethernet router as access point, a personal proxy server, or pihole, between your devices and theirs. Or, if possible your own modem and router.

    [ISP modem/router]<–LAN–>[personal wifi router]<wifi>[cheap pc proxy @ 192.168.x.x]<wifi>[all your devices]

    Proxy could be ssh(socks5), tor, shadowsocks (not microsocks), dnscrypt, tinyproxy, nekobox, whatever. They’d all have the same internal address from the proxy (if set up that way) and then again one address from the router to their device. (Router and proxy order could be reversed : or just router for some basic device identity privacy - it doesn’t encrypt your data though. An encrypted proxy will. And tor or a VPN will mask your external ip) Some proxies/VPN are more secure than others.

    And,RTFM. A bad configuration can be worse than no configuration.






  • The source code is freely available for you to run all the tests yourself. On any browser you like.

    Brave sucks. Peter Thiel can suck the corn out of my shit.

    But, the tests and results are still accurate. *based on fresh install and no config changes. (FF can be hardened well beyond what’s shown)

    As you can see in the results tor/mull/mullvad/librewolf are basically the best for all around privacy and security.

    They’re all based on FF.

    Ps: The guy was doing this long before he went to work at brave. (Maybe that’s why they hired him? Hmmm)