Live data from Hacker News

LibreWolf – A fork of Firefox, focused on privacy, security and freedom

librewolf-community.gitlab.io

261–270 of 310 posts

Re: LibreWolf – A fork of Firefox, focused on privacy, security and freedom

#261
post #237

Earlier quoted context omitted.

> Telemetry isn't inherently bad or privacy violating. How can you tell?

In Firefox: point your url bar to about:telemetry It shows you all the data that has been gathered. (Though IIRC it might still show stuff even when you've disabled telemetry -- in that case the data is being aggregated locally but not sent.) Go to https://telemetry.mozilla.org To look at the data on the server side. There are more sophisticated ways of querying it, but obviously not everybody can just be handed acce…

You forgot safe browsing.

Re: LibreWolf – A fork of Firefox, focused on privacy, security and freedom

#262

Author of Mozilla telemetry here. You can accomplish this with official firefox by blacklisting incoming.telemetry.mozilla.org domain, per https://searchfox.org/mozilla-central/search?q=telemetry.moz...

Of the 180 lists we track at RethinkDNS, all the top ones contain *.telemetry.mozilla.org https://rethinkdns.com/search?q=telemetry.mozilla.org

That said, on Android, I don't see a single telemetry.mozilla.org entry in my DNS query logs.

Re: LibreWolf – A fork of Firefox, focused on privacy, security and freedom

#263
post #255

Earlier quoted context omitted.

It's not even the privacy aspect alone. There have been repeated cases of absolutely legit, not even controversial sites landing on blacklists, for reasons of technical errors maintaining those, or some jurisdictions DMCAing some other site(s), hosted behind the same IP-range in the same data-center. Boom. Suddenly the site is gone, or at least you have to click around endless warnings about impending doom if you pro…

How often does a non-controversial site gets added to it vs the genuine threats/phishing websites it protects grannies from? I think it has an absolutely good tradeoff based on the relative percentages of the former categories.

I'd have to consult lists, since I disabled those features almost as soon as they were becoming common. So about 10 years ago. With the exception of a Windows7 installation which I had to use occassionally. There I disabled that later, out of curiosity, until it grew too annoying. And of course, when being elsewhere, wanting to show some people some sites(not porn, gaming, just self hosted bloggers or forums) again and again. And I've been like wtf, what am I doing wrong, where did I make a typo, or am I remembering the sitename wrong?

Nope. Everything all right. Just not the blacklisting.

And this also happened with FF running under Linux.

Why are you all so apt to accept being conditioned into learned helplessness?

Re: LibreWolf – A fork of Firefox, focused on privacy, security and freedom

#264
post #256

Earlier quoted context omitted.

>Google maintains the Safe Browsing Lookup API, which has a privacy drawback: "The URLs to be looked up are not hashed so the server knows which URLs the API users have looked up". The Safe Browsing Update API, on the other hand, compares 32-bit hash prefixes of the URL to preserve privacy. The Chrome, Firefox and Safari browsers use the latter. >Safe Browsing also stores a mandatory preferences cookie on the compute…

> The Safe Browsing Update API, on the other hand, compares 32-bit hash prefixes of the URL to preserve privacy. The Chrome, Firefox and Safari browsers use the latter. How exactly?

The rest of it.

>Safe Browsing also stores a mandatory preferences cookie on the computer.

>Google Safe Browsing "conducts client-side checks. If a website looks suspicious, it sends a subset of likely phishing and social engineering terms found on the page to Google to obtain additional information available from Google's servers on whether the website should be considered malicious". Logs, "including an IP address and one or more cookies" are kept for two weeks. They are "tied to the other Safe Browsing requests made from the same device."

Re: LibreWolf – A fork of Firefox, focused on privacy, security and freedom

#265
post #228

Author of Mozilla telemetry here. You can accomplish this with official firefox by blacklisting incoming.telemetry.mozilla.org domain, per https://searchfox.org/mozilla-central/search?q=telemetry.moz...

Let's stop making privacy a techie-only thing, though. This should be a question a user chooses the first time they boot the browser, and Firefox should do its hardest to honor it.

What is privacy really? The browser? The ISP gets your data, the site gets metrics, and VPNs will just redirect traffic.

Re: LibreWolf – A fork of Firefox, focused on privacy, security and freedom

#266
post #255

Earlier quoted context omitted.

How often does a non-controversial site gets added to it vs the genuine threats/phishing websites it protects grannies from? I think it has an absolutely good tradeoff based on the relative percentages of the former categories.

I'd have to consult lists, since I disabled those features almost as soon as they were becoming common. So about 10 years ago. With the exception of a Windows7 installation which I had to use occassionally. There I disabled that later, out of curiosity, until it grew too annoying. And of course, when being elsewhere, wanting to show some people some sites(not porn, gaming, just self hosted bloggers or forums) again a…

I also will not send my URLs to google for them to tell me if its safe or not. I do use hosts on my router for ads and to block malicious sites, but its all local files rather than phoning google with my browsing history.

Re: LibreWolf – A fork of Firefox, focused on privacy, security and freedom

#267
post #254

Earlier quoted context omitted.

It happens all the time with different OS’, software, games, and apps. I don’t know of a single example of Firefox doing it, but I feel like it’s fair if people are thinking about it as a possibility.

> I don’t know of a single example of Firefox doing it, but I feel like it’s fair if people are thinking about it as a possibility. This line of reasoning doesn't add anything of value because the same fear mongering applies to LibreWolf and any other project just the same.

My intent was not to fearmonger. I agree that anyone could do it (including LibreWolf). My intent was to say that the comment I responded to has a rightful place in these discussions (and further: in any discussion about privacy)

Re: LibreWolf – A fork of Firefox, focused on privacy, security and freedom

#268
post #261

Earlier quoted context omitted.

In Firefox: point your url bar to about:telemetry It shows you all the data that has been gathered. (Though IIRC it might still show stuff even when you've disabled telemetry -- in that case the data is being aggregated locally but not sent.) Go to https://telemetry.mozilla.org To look at the data on the server side. There are more sophisticated ways of querying it, but obviously not everybody can just be handed acce…

You forgot safe browsing.

What about it?

How you probably think it works in Firefox and how it actually works in Firefox are two different things, by the way:

https://feeding.cloud.geek.nz/posts/how-safe-browsing-works-...

Re: LibreWolf – A fork of Firefox, focused on privacy, security and freedom

#269
post #191

Earlier quoted context omitted.

On another thread, I was told: "Firefox is feeding your data to Google. You need to disable it in the user.js file"

To google? Other than it being the default search engine, highly doubt. And those “home calls” are nothing more than calls like whether you are on the public internet, whether a new update is available and other mundane things.

AFAIK Mozilla uses Google services for some telemetry. But that's exactly the kind of thing that warrants detailed consideration and not just "there's traffic touching a Google IP, THEY ARE FEEDING DATA TO GOOGLE!" and random scripts from the internet that disable IPv6 "against tracking"

Re: LibreWolf – A fork of Firefox, focused on privacy, security and freedom

#270
post #228

Earlier quoted context omitted.

Let's stop making privacy a techie-only thing, though. This should be a question a user chooses the first time they boot the browser, and Firefox should do its hardest to honor it.

What is privacy really? The browser? The ISP gets your data, the site gets metrics, and VPNs will just redirect traffic.

Having control over which information about yourself, your life, your habits, etc. you choose to give out, when, for how long, and to whom.

It's not this convoluted. Give people their privacy.

Post reply on HN