Strypey · @strypey
2520 followers · 26221 posts · Server mastodon.nzoss.nz

@f00fc7c8
> uBlock Origin on Firefox blocks all YouTube ads for me

I use this as a backup. My primary digital prophylactic is NoScript, which gives me full control over which domain names websites can pull JavaScript from to run in my browser:

noscript.net/usage/

@malwaretech @potatogunkelly

#noscript #trackingblockers

Last updated 1 year ago

Who Let The Dogs Out 🐾 · @ashed
140 followers · 10099 posts · Server mastodon.ml

**jshelter**

NoScript блокирует загрузку отдельных скриптов или объектов. Всё то же самое умеют делать uBlock и uMatrix.

Дополнительно нужна защита от XSS, CSRF, позволяющая гибко настраивать правила, как в правилах файрвола. Помогает от всяких банков, которые любят прозванивать порты на 127.0.0.1

addons.mozilla.org/ru/firefox/

JShelter же блокирует/перехватывает доступ к конкретным API вызовам и либо блокирует либо подменяет на фейковые данные по гибким настройкам.
С помощью JShelter гораздо проще сломать сайт и не понять почему, но позволяет подменить трекинговые вызовы API, что не может сделать NoScript.

Достаточно зайти на сайт измерения фингерпринта (polcak.github.io/jsrestrictor/) с NoScript и JShelter и увидеть, что JShelter значительно понижает уникальность, а NoScript лишь блокирует рекламные скрипты.

FAQ (jshelter.org/faq/)
blog (jshelter.org/blog/)

#firefox #extension #noscript #JShelter #ublock #umatrix

Last updated 1 year ago

Spaceflight 🚀 · @spaceflight
1634 followers · 1516 posts · Server techhub.social

#firefox #noscript

Last updated 1 year ago

@dragonmantank
Strongly recommend w highest Safety level and added, as per how provide Tor to . Great for browsing the and onion sites. Put the addon button in the topbar to easy enable js for trusted sites.

For we recommend a Firefox based browser that is hardened like TorBrowser. A good place to start is the spyware.neocities.org site, and the Archlinux wiki (surprisingly), on hardening Firefox-based browsers.

#torbrowser #ublock #TailOS #journalists #clearnet #noscript #i2p

Last updated 1 year ago

tulpa · @tulpa
340 followers · 481 posts · Server fosstodon.org

I feel like doesn't really help me much. I can think of ways around anything it does for me. So I can't rely on it, and have to defend against the same threats I'd have to defend against without it.

#noscript

Last updated 1 year ago

Sebastian Lasse · @sl007
1721 followers · 5363 posts · Server digitalcourage.social

@matthiasott

In the talk @hdv asked if we would like to have from <popover> also for <dialog> -

What I would really want to is if I could use the same elements in popover, dialog, datalist etc.

In any ActivityPub App one of my major UI concern is “duplication of content” for the base-html-only experience.
I mean, e.g. to not repeat the actors-elements in the inbox-view …

#noscript

Last updated 1 year ago

Sebastian Lasse · @sl007
1721 followers · 5363 posts · Server digitalcourage.social

@matthiasott
Do we have a special hashtag for problems where the majority still says "use jquery" while it can be an html-only thing?
How about ?
PS - This is nice:
codepen.io/noahblon/pen/ZbjmbK

@hdv

#noscript

Last updated 1 year ago

anipatok · @anipatok
1 followers · 15 posts · Server musicians.today

@RL_Dane
love it when the website has a version but dislike a black page just saying: "you need to enable javascript for this webpage to work"

#noscript

Last updated 1 year ago

R. L. Dane · @RL_Dane
1440 followers · 25096 posts · Server fosstodon.org

@anipatok

I used to use years ago, but haven't in a really long time.

I do use w3m a lot and really like it. links is a bit more advanced, but its keybindings aren't configurable (that I've been able to discover, anyway). w3m is not quite as good at rendering various types of pages (although it is better than lynx), but its incredibly configurable, and I've got mine set up with some very nice vi-style keybinds.

#noscript

Last updated 1 year ago

@defcon @torproject
2/
…without the need to enable JS (please see above hashtag for our previous writings on how this might work),
2) Access to the addon, allows enabling javascript on a per-domain basis as was the case in previous versions,
3) Try lowering security to [Safer,Standard] Mode.
b) Last we checked uses uBlock in , why does the official not? We've tested it. Many sites work fine,
c) Might 'Block CloudFlare MITMAttack ()' addon be included in…2/3

#noscript #tailsos #torbrowser #BCMA

Last updated 1 year ago

tulpa · @tulpa
520 followers · 396 posts · Server fosstodon.org

It seems that maybe 's XSS filter might have caught it?

#noscript

Last updated 1 year ago

Zombi Digital :verified_red: · @ZombiDigital
64 followers · 275 posts · Server tkz.one

El 99% de los sitios web son vulnerables a ataques por JavaScript debido a la presencia de numerosos complementos de terceros. Solo el 1.1% tiene una seguridad realmente efectiva, lo que los hace susceptibles de exponer información sensible y ser víctimas de robo de datos, convirtiéndolos en una amenaza potencial.

Para protegerse, se recomienda utilizar un complemento popular llamado "NoScript" (disponible también en Firefox para ). En el caso de en PC, se sugiere utilizar "Disable JavaScript", que desactiva automáticamente JavaScript por defecto. Si una página no se carga correctamente, al hacer clic en el icono gris de "js" en la barra de la URL del navegador, se activará JavaScript y se recargará la página automáticamente. Esta práctica también ayuda a evitar mucha publicidad no deseada.

Dejo los enlaces de los complementos
addons.mozilla.org/es/firefox/

addons.mozilla.org/es/firefox/

#android #firefox #seguridadweb #vulnerabilidades #javascript #ciberseguridad #noscript

Last updated 1 year ago

Kevin Karhan :verified: · @kkarhan
1201 followers · 80200 posts · Server mstdn.social

@zalintyre Ich bin ja dafür knallhart wie , und @torproject zu sein und alles was mensch nicht explizit zustimmt knallhart wegzublocken!

Würde mir wünschen @mozilla würde das knallhart durchsetzen!

#torbrowser #ublockorigin #noscript

Last updated 1 year ago

aerique · @aerique
87 followers · 2746 posts · Server genart.social

@hacks4pancakes What about blocking JavaScript?

@ma1's is so nice.

#noscript

Last updated 1 year ago

James Bartlett :terminal: · @JamesDBartlett3
405 followers · 1380 posts · Server techhub.social

@strypey @tripleo
I just opened one of my public repos in on , used the extension to block all scripts from both github.com and githubassets.com, and I can still read source code files, browse commit history, etc.

On the mobile site, the page element containing the repo's root directory is hidden by default (presumably to conserve screen real estate). Naturally, un-hiding that hidden page element requires , so that's why the "view code" link doesn't work. However, that's the only part of the mobile site that I could find which requires JS.

A simple fix: Enable the "Desktop site" toggle in your mobile browser settings. 😉

#github #firefoxmobile #android #noscript #javascript

Last updated 1 year ago

Crazy-to-Bike · @crazy2bike
200 followers · 9925 posts · Server mastodon.linuxmuster.net

@TheDeckie

Ja, du hast leider Recht. Hatte noch Adguard aktiviert und deshalb war es noch clean.

Aber wie schon gesagt: Wer auf Werbelinks klickt, ist selbst Schuld.

Ein bisschen Mitdenken muss man halt, wenn einem Datenschutz wichtig ist.

Sonst kann man auch gleich Google nehmen.

Und ein paar Addons installieren ist auch kein Hexenwerk.






to be continued.

@jfml @MJung @SheDrivesMobility

#adguard #clearurls #ghostery #noscript #privacybatcher #ublockorigin

Last updated 1 year ago

Strypey · @strypey
2348 followers · 23121 posts · Server mastodon.nzoss.nz

Does anyone know if there's a way to get LibreJS and NoScript to play nicely together? What I'd like is for NoScript to automatically trust JS from any domains that LibreJS confirms as Free Code.

#librejs #noscript

Last updated 1 year ago

Pedro J. Hdez · @ecosdelfuturo
899 followers · 290 posts · Server mstdn.social

Navegación más segura

Interesante extensión Comparte desarrolladores con (que es la que usaba) pero trae un modo por defecto para minimizar los problemas de funcionamiento de la webs y así desentenderse de la tediosa configuración de permisos en NoScript.

jshelter.org/

#noscript #JShelter

Last updated 1 year ago

· @Kavah
284 followers · 618 posts · Server todon.eu

Heise cookie monster sagt, ich müsse mindestens petsonalisierter Werbung mit Profilbildung zustimmen. Ähm nö, dann lieber noscript. Wtf

#heise #noscript #cookies

Last updated 1 year ago

Kevin Karhan :verified: · @kkarhan
1072 followers · 67605 posts · Server mstdn.social

@newdefined Ja, bahnhof.se macht das mit nem entsprechenden ...

Nachteil: Ist Lokalanbieter in .

Erschwerend kommt hinzu, dass allein nicht für reicht!

Sonst würde einfach nur oisd.nl als reichen und mensch bräuchte nicht & !

github.com/greyhat-academy/lis

#noscript #ublockorigin #blocklist #adblocking #stockholm #DNS

Last updated 1 year ago