Web browsers - Firefox

Firefox is a privacy focused web browser providing a good alternative to their proprietary and data hungry counterparts. It is also the basis for many others projects (i.a LibreWolf, IronFox, Mullvad Browser, Tor Browser, …)

Configuration

Despite being privacy focused, many defaults are sub-optimal or even wrong.

Enhanced Tracking Protection

Users should enable Enhanced Tracking Protection in strict mode to block social media trackers, cross-site tracking cookies, fingerprinters, cryptominers and others tracking content.

Search

Users should change their search engine to a privacy focused one and disable search suggestions.

AI

Users should disable the numerous AI features now included in the latest versions.

Autofill

Users should disable passwords, addresses, payment methods save and fill.

HTTPS-Only Mode

Communication between web browser and server is governed by the Hypertext Transfer Protocol (HTTP). By default the data transferred is unencrypted, data can be viewed, altered and stolen. Fortunately nowadays most websites are equipped by HTTPS and extension of HTTP using Transport Layer Security (TLS) to encrypt the data.

Users should enable HTTPS-Only Mode in all windows to force the use of secure encrypted connection.

DNS over HTTPS

DNS over HTTPS does domain name resolution through an encrypted connection. Three levels of protection are offered: default protection when secure DNS is available, fallback to default provider if issues arise, gets turn off if VPN / parental control / Enterprise policies are active; increased protection for users wanting control over their secure DNS with still fallback provided; and max protection with an always secure DNS on.

Users not using a VPN should set DNS over HTTPS to max protection and set a trusted provider.

Telemetry

Users should disable telemetry sending technical, interaction data and daily usage ping to Mozilla.

Private browsing mode

Users may want to use private browsing mode to delete cookies and browsing history between sessions.

Browser hardening

Users wanting to configure their browser further by themselves or through project like Arkenfox should instead consider alternatives.

Extensions

Users may consider adding the following extensions:

Users are highly encouraged to add uBlock Origin and NoScript for content filtering and blocking. Users of the password manager KeePassXC not wanting to manually copy and paste passwords from the database to the browser could add the optional KeePassXC-Browser for convenience.

Recommendations

Firefox is a good starting point, but following the series of blunder from Mozilla and pivot to AI better alternatives exists. On the desktop, users should consider switching to LibreWolf or better Mullvad Browser unless they prefer to stay as close as upstream as possible. On mobile, Firefox-based browser are not recommended due to the lack of many security features. If they insist they can either choose the official Firefox or IronFox. Users should instead consider Chromium-based browsers like Cromite unless they are using GrapheneOS in which case the should stay with the default Vanadium.

Sources


The text is available under the license Creative Commons Attribution-ShareAlike 4.0