Recent comments
dontvisitmyintentions wrote
Reply to Wireless earbuds are stupid. Change my mind. by Rambler
The wireless type that goes around your neck in one piece is superior while carrying loads, strapped to a bag, or twisting around. It tends to stay put or fall on your shoulder. You don't want to put the wired or wireless earbuds back in after they get yanked out and touch the ground.
Though that's easier to prevent with a wire you can clip to your shirt.
Actually, I prefer the old cheap style over-the-ear headphones regardless. Sometimes one pops up in a discount store, likely old stock getting cleared out.
Wahaha wrote
Reply to Wireless earbuds are stupid. Change my mind. by Rambler
I hate headphones either way, to be honest.
burnerben wrote
Reply to Wireless earbuds are stupid. Change my mind. by Rambler
i went through 2 pairs of airpods before i got annoyed enough to start using wired. now ive gone through 10 pairs of apple wired earbuds.
Wahaha wrote
Reply to comment by BlackWinnerYoshi in RockYou2021: largest password compilation of all time leaked online with 8.4 billion entries by Rambler
Even if my online accounts got compromised, I don't think I would particularly care. What are they going to do, post mean things in my stead?
BlackWinnerYoshi wrote (edited )
Reply to Firefox Hardening Guide | BlackGNU by benis
This comment is probably the longest thing I wrote on [RAMBLE], maybe the longest from all users, but the TL;DR: use LibreWolf, since it has the tweaks recommended, and install some addons, especially uMatrix, WebRTC Control, LocalCDN. And others listed on the essentials privacy addons. Besides searX, you can use MetaGer and YaCy for search results from independent indexes. I really hope this summary is enough, since this entire thing is 8 000 characters long if you render it in plain text as UTF-8. Can you imagine it took me several hours to write this? Well, mostly because I was also distracted with other things, oh well, I guess enjoy the reading, or don't, just skip past it if you want
As burnerben said, you should use LibreWolf instead of hardening Firefox, especially since arkenfox' user.js doesn't disable all connections, which werwolf proves themselves by showing what you can tweak in about:config. Sure, LibreWolf enables autoupdating uBlock Origin lists by default and it relies on the evil Mozilla, but it's still the best Firefox fork if you really need one. Anyway, let's skip the entire profile nonsense and move to search engines.
They recommend searX, which I think is a good choice, especially after they released version 1.0.0 — but it does rely on Google and other search engines, which might bother some. It does, however, support searching with Mojeek and Wiby, which have fully independent indexes, although with weak results, so it's probably a good idea to enable those and whatever else you want. What about the other, less recommended options?
- MetaGer: not sure if I can count it as a metasearch engine, since, unlike searX, you don't get 70+ search engines, you only get four: Scopia (which is their index, and of course, it has weak results — but DuckDuckGo also has its own), Bing (like DuckDuckGo, but they also use yahoo*!*), and One News Page for both text and video (why are there two of them, especially since they're also in the News/Politics category?). That's just the Web category, of course, there's also Pictures (which exclusively uses Bing), Shopping (like how Pictures uses only one search engine, this one uses Kelkoo, which looks like it's useless), and News/Politics, but it's still nothing compared to searX. Also, I'm not sure if it's preferable over DuckDuckGo, since they: don't require JavaScreep, partially use their own indexes, have onion domains, store IP addresses, have somewhat good results, and don't share data with third parties.
- DuckDuckGo: if you don't trust DuckDuckGo, why do you list it? Actually, whatever, if you do want to use it, use the Lite version, as shown here.
- Qwant: is it actually private? Well, Qwant's privacy policy says that, besides the queries, it stores a “salted hash of the user’s IP address” and “the User Agent” for a week. Obviously, I remember that the only anonymous data is no data (yes, it is from DuckDuckGo, but you get my point), but it's still probably better than other search engines. Also, note the freetardist “non-free” notice because I don't know why would you want to say that otherwise, lol.
- Mojeek: I already mentioned it has an independent index, and it neither stores your IP address nor shares it with third parties. But again, there's that stupid “non-free” notice, even though it doesn't matter at all.
- YaCy: I think this one might be even better than Mojeek and Wiby combined, considering everyone can contribute, but I have no idea how do they compare.
Should you use any of those? Well, maybe MetaGer if you want its Scopia index and YaCy for P2P index, since the rest can be used with searX.
Now let's see their recommended addons:
- uBlock Origin: I think that uMatrix (which is mentioned, along with NoScript, but I don't recommend that because it's malicious and dishonest and it doesn't allow blocking other than global) is better because, by default, it relies on blocking entire classes instead of lists that need to be constantly updated. Also, it has well configured rules. Although, it only does basic content blocking, which might be an issue on sites like YouTube, where the scripts to load videos and ads are on the same site. So if you have to rely on them, it's probably a good idea to get uBlock Origin too, or Disconnect as an alternative.
- LocalCDN: like uMatrix, LocalCDN is an essential privacy addon, which supports more CDNs than Decentraleyes.
- Password manager choices: bitwarden looks like a pretty good choice, but the problem is that they have premium membership, which, if you don't have it, locks out options like TOTP, which aren't considered essential here, for some reason. Luckily, the community came to help and made vaultwarden, which doesn't have that. If you want an instance, LavaTech has one. But if you don't want to store passwords online, KeePassXC is probably a good option too, along with Syncthing if you have multiple devices. I don't recommend pass because it requires a terminal, which is ridiculous.
That's the essentials considered by them, but I think WebRTC Control should be there too, especially for those changing IP addresses, since WebRTC reveals your real one, even with Tor over VPN. Sure, the about:config tweaks do suggest disabling it, but those two settings might not be enough. What about other addons?
- Cookie AutoDelete: I think that first party isolation and disabling tracking cookies should be mostly enough, and you could be fingerprinted if you have many addons.
- ClearURLs: not only UTM tracks, but it's also annoying, so definitely get it. Although, I didn't notice any breakage from that addon back when I used it.
- Temporary Containers: this thing is just a fake initiative, and it's outclassed by uMatrix.
- ETag Stoppa: ETags are useless anyway, so get rid of them.
- CanvasBlocker: this one did break sites for me, but it's still useful if you need third party JavaScreep, which is what uMatrix blocks by default.
- xBrowserSync: like how you shouldn't sync passwords with Firefox Sync, you shouldn't sync your bookmarks with that too, so use this addon instead!
- AdNauseam: if you want to use sites like YouTube and tick off ad networks, use this along with uMatrix and hopefully, we'll destroy the cancer!
- Privacy Redirect: a better idea would be to use Redirector and set up regex rules for redirection, which makes it superior to that because you can add other sites too.
Also, I recommend checking the essentials privacy addons to see other useful addons.
Just to end this long comment, let me talk about the buttons below for a bit. FreeBSD is, well, probably better in website hosting because it has better security practises, unlike Linux. Discord is bad, and it's good they're promoting the Online Spyware Watchdog. No idea why they don't like the <blink> HTML element, I never used it. There's this “The Bible is an Anarchist Manifesto” thing that's controversial, apparently, and this comparison of Goolag Hrom and Internet Exploder is actually funny, and… oh no, the Vim editor (remember what I said about pass?). About Mastodon… why not just not use social media and connect to people directly instead? The last button is just promoting itself as a project “which tries to mimic the 80s multi users unix machines”. That's all.
BlackWinnerYoshi wrote
Reply to comment by Wahaha in RockYou2021: largest password compilation of all time leaked online with 8.4 billion entries by Rambler
To be honest, if you have an account on a just breached site and your data didn't got leaked, it's probably a good idea to change it anyway. I still use these kinds of tools, though, but mostly because I used to make accounts on lots of services, forget about them, then get reminded again by a breach, then I usually just download whatever data I had, if any, then remove the account and forget about services for however long. The shock when I found out I got my data leaked because of the Armor Games breach...
burnerben wrote
Reply to Let's focus on the things we have in common #4 by Wahaha
we are one in the same
Wahaha wrote
Reply to RockYou2021: largest password compilation of all time leaked online with 8.4 billion entries by Rambler
users are recommended to immediately check if their passwords were included in the leak.
"We recommend you to add your password to the leak".
These tools have always been a head scratcher for me.
dontvisitmyintentions wrote
Reply to Firefox Hardening Guide | BlackGNU by benis
I had not heard of that LocalCDN fork of DecentralEyes, and I'm going to try it out. Also prefs list is short and useful. Nice. Usually these Firefox guides are so big and outdated that they're hard to find the good stuff in them.
liminal wrote (edited )
Reply to The Media's Lab Leak Debacle Shows Why Banning 'Misinformation' Is a Terrible Idea by Rambler
"In light of ongoing investigations into the origin of COVID-19 and in consultation with public health experts, we will no longer remove the claim that COVID-19 is man-made or manufactured from our apps," the social media platform declared in a statement.
Can't make this shit up.
liminal wrote
Reply to FBI drops demand for newspaper readers' data by Rambler
Guess they asked someone else.
liminal wrote
Reply to comment by Rambler in Hunter Biden used N-word in messages with his lawyer, even SEXTED him by accident – media by Rambler
No offense, but this isn't politics and I think your site deserves better. The belief that politics is mostly about personalities is crippling our society, but in this case the subject of the article isn't even a politician.
liminal wrote (edited )
Reply to Court rules encrypted email provider Tutanota must monitor messages in blackmail case - CyberScoop by Rambler
It's interesting because, from what I gather, in Germany they have the same rule regarding telecommunication providers as in Switzerland, but different interpretations of it or - more precisely - of what constitutes a telecommunication provider. Maybe it's true that Switzerland is still a decent model when it comes to privacy.
Rambler OP wrote
Reply to comment by J0yI9YUX41Wx in Hunter Biden used N-word in messages with his lawyer, even SEXTED him by accident – media by Rambler
I have no opinion one way or the other. I don't think that use of the word is actually offensive. Hunter is just trying to be hip and cool or whatever, which is cringey as hell, but not 'offensive' (in my opinion). Then again, I'm not 'qualified' to have an opinion on the matter. I just think it's some silly glorification of a culture that has some white people adopting lingo like that and I never understood why people get upset at that use of the word when used in that context.
I just posted because it'd be a massive story and in the news for a week had this happened a year ago with the last president's son, or something. There would be a lot of social media outrage, etc.
Anytime I hear a white person say shit like that I just think of J-Roc from Trailer Park Boys. https://tube.incognet.io/watch?v=qeqyL-V0Sho & https://tube.incognet.io/watch?v=b1YIjzq6X8k
J0yI9YUX41Wx wrote
Reply to Hunter Biden used N-word in messages with his lawyer, even SEXTED him by accident – media by Rambler
He sounds like an ok guy to me. Read the texts in the Russia Today article. I approve of those texts.
burnerben wrote
Reply to Firefox Hardening Guide | BlackGNU by benis
why not just use LibreWolf?
burnerben wrote
Reply to comment by Rambler in U.S. seizes $2.3 mln in bitcoin paid to Colonial Pipeline hackers by Rambler
the more that comes out the more i agree with the first one. supposedly they are experienced in ransomware. but why use bitcoin when you could just use monero? why use a wallet that can be accessed by the fbi? the group is called "darkside" and has an onion site. (havent found it personally) but what the media has presented is that they are experienced. they arent just some hackers who found a vuln and were like "hey lets write some ransomware". seems really suspect to me. and there has been a big push for regulation around crypto.
Rambler OP wrote
Reply to comment by burnerben in U.S. seizes $2.3 mln in bitcoin paid to Colonial Pipeline hackers by Rambler
I honestly haven't looked into the whole thing that much, BUT I could see it all being a big ploy to stir up support for regulation and controlling the narrative to the masses that 'crypto = bad'.
OR, it was just lucky hackers who happened to stumble upon some vulnerability and took advantage of it.
burnerben wrote
Reply to Digital Only Physical Games - Scott The Woz by Wahaha
i love scott the woz, he has his 200th episode recently. it was really well put together.
burnerben wrote
what im getting from this is the fbi served a secret warrent to whoever held the wallet and are showing it off to scare away people who are considering carrying out ransomware attacks.
a lot of the whole colonial pipeline situation is confusing to me so maybe you guys can help me fix my retardedness.
-
Why didnt they just use XMR?
-
Why would they use a wallet hosted by some company?
maybe im asking all the right questions, maybe im retarded. probably the ladder.
burnerben wrote
Reply to Lasers capable of transmitting signals at 224 gigabits per second, enough to achieve 800 gigabit ethernet by Rambler
the need for speed
Wahaha wrote
podnas wrote
Reply to Adolescents - Kids of the Black Hole by Rambler
WIN ! Thanks, haven't heard this jam in too long ..
burnerben wrote
Reply to Adolescents - Kids of the Black Hole by Rambler
Great song.
burnerben wrote
Reply to comment by BlackWinnerYoshi in Firefox Hardening Guide | BlackGNU by benis
this is fantastic info, copy paste this into a post and get Rambler to pin it on /f/privacy