{"id":8,"date":"2019-06-14T17:08:01","date_gmt":"2019-06-14T16:08:01","guid":{"rendered":"https:\/\/increasec.com\/?p=8"},"modified":"2021-02-28T23:30:32","modified_gmt":"2021-03-01T04:30:32","slug":"browser-safety","status":"publish","type":"post","link":"https:\/\/increasec.com\/?p=8","title":{"rendered":"Browser Safety"},"content":{"rendered":"\n<p>Browser Safety<br>\n  The security benefits of a good firewall have been universally accepted, the Red teams have focused attention on the next path of least resistance, which is the user.  Gone are the days when we had a separate application for Mail, messaging etc.  The Browser is the user&#8217;s 1 window into the internet.<\/p>\n\n\n\n<p>Get a safer <a href=\"https:\/\/content-security-policy.com\/\">Browser<\/a><br>     Chrome &#8211; Recommended, Fast, Secure, Doesn&#8217;t hog memory<br>     Firefox &#8211; occasionally hogs memory, new version is better, Internet settings separate from OS; allows OS to be routed through a proxy but Firefox routed direct to internet.<br>     Edge &#8211; M$ has officially given up, Edge will soon be based on Chrome engine.<br>    NEVER Safari for Mac, it only supports <a href=\"https:\/\/content-security-policy.com\/\">CSP Level2<\/a> where above browsers support CSP Level 3<br>     NEVER Internet Explorer!!!  its only use is to download Chrome<\/p>\n\n\n\n<p>Extensions for security\/privacy<br>     uBlock Origin &#8211; Recommended blocker for Ads, trackers, malware, phishing etc.  Low Cpu,Mem<br>         alts: Adblock+, Ghostery, QuickJava<br>     Bitdefender Trafficlight &#8211; Recommended Classifies websites; Avoids Phishing and drive-by&#8217;s<br>         alts: Wot, Avira Browser Safety<br>     HTTPS Everywhere &#8211; automatically tests for a HTTPS site and lands you there<br>         alts: KB SSL Enforcer, ForceHTTPS<br>     TunnelBear VPN &#8211; convenient for use anywhere public.  Install on laptops, not required on desktops.<br>         alts: Hola Free VPN, Gom VPN<\/p>\n\n\n\n<p>   LastPass &#8211; Password Manger and secure password generator.  Includes secure text storage for secret notes.  You can share access to websites without telling someone your password!  (if you both have LastPass)<\/p>\n\n\n\n<p>Privacy;  Optional<br>\n    Change default search engine to DuckDuckGo.  Most other search engines sell your browsing history to make money.  This can be done globally via Group Policy.<\/p>\n\n\n\n<p>Corporate Proxy;<br>   A proxy is a good method to get consistent filtering, for thousands of workstations, that is relatively easy to maintain.<br>   UTM firewalls may include a proxy.<br>   Pros: can be Free Linux+Squid+DansGardian, centralized, flexible filtering, flexible migration via DHCP or DNS.  Global Antivirus can be added.  Caching speeds up frequently accessed web pages.  <br>   Cons: Only works onsite, laptops still need additional protection.  Can be a single point of failure if not designed properly.<br>   Possibilities: Group Policy could force your servers to use a proxy that allows only OS+AV updates.  GP for laptops could force IE to use a restictive proxy but allow installing the more secure Firefox+Extensions<\/p>\n\n\n\n<p>Check your browser CSP here   https:\/\/content-security-policy.com\/browser-test\/<\/p>\n\n\n\n<p>General Browser security test here     https:\/\/browseraudit.com\/<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Browser Safety The security benefits of a good firewall have been universally accepted, the Red teams have focused attention on the next path of least resistance, which is the user&#8230;.<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[2,4,3],"class_list":["post-8","post","type-post","status-publish","format-standard","hentry","category-uncategorised","tag-personal","tag-security","tag-smb"],"_links":{"self":[{"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/posts\/8","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/increasec.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=8"}],"version-history":[{"count":4,"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/posts\/8\/revisions"}],"predecessor-version":[{"id":959,"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/posts\/8\/revisions\/959"}],"wp:attachment":[{"href":"https:\/\/increasec.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=8"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/increasec.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=8"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/increasec.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=8"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}