10
Hardening the Firefox browser
Preventing unwanted background traffic to Google, Pocket and hidden telemetry to Mozilla
Per Foyer
per@foyer.se
10 Cryptoparty 201911-R1
Hardening the Firefox browser Preventing unwanted background traffic - - PowerPoint PPT Presentation
Hardening the Firefox browser Preventing unwanted background traffic to Google, Pocket and hidden telemetry to Mozilla Per Foyer per@foyer.se 10 10 Cryptoparty 201911-R1 Hardening Firefox: Method To harden Firefox we need to: 1. Adjust
10
Preventing unwanted background traffic to Google, Pocket and hidden telemetry to Mozilla
Per Foyer
per@foyer.se
10 Cryptoparty 201911-R1
To harden Firefox we need to: 1. Adjust visible configurations in Options / Preferences 2. Do a fair amount of changes to parameters hidden in the about:config settings (behind the scene):
First, let’s have a look what’s going on the network interface when using a stock installation of Firefox…
11 per@foyer.se Cryptoparty 201911-R1
12
Firefox started… Not touching the browser!
Cryptoparty 201911-R1
Wireshark monitoring host’s NIC (outgoing traffic)
Per@Foyer.se
13
Not touching the browser! Massive amounts of requests being done…
Cryptoparty 201911-R1 per@foyer.se
14
Not touching the browser! Say hello to Google…
Cryptoparty 201911-R1 per@foyer.se
15
Still not touching the browser! Probable telemetry sent to Mozilla
Cryptoparty 201911-R1 per@foyer.se
16
Just started A short initial burst of (unknown) connections to one single Akamai server Then, silence…
Cryptoparty 201911-R1 per@foyer.se
17
Visible settings (Follow me)
Cryptoparty 201911-R1 per@foyer.se
Step 0: Backup your bookmarks!!!
18
about:config: Pocket
Cryptoparty 201911-R1 per@foyer.se
(Follow me)
19
about:config: WebRTC
Cryptoparty 201911-R1 per@foyer.se
(Follow me)
20
about:config: Crash dumps
Cryptoparty 201911-R1 per@foyer.se
(Follow me)
21
about:config: Telemetry
Cryptoparty 201911-R1 per@foyer.se
(Follow me)
22
about:config: Google… (Done!)
Cryptoparty 201911-R1 per@foyer.se
23 Cryptoparty 201911-R1 per@foyer.se