The Quantum Ad-List contains domains used by ads, trackers, malware
gitlab.com
gitlab.com
But umatrix is complex. Ublock is good enough. I just wished I could whitelist all cdns
https://github.com/gorhill/uBlock/wiki/Dynamic-filtering:-de...
That's unlikely, unless it increased your own risky behavior. If you install uMatrix and then set it to allow all content, you would be in the same situation as if you didn't have uMatrix at all, ie. no less safe.
1. uBO defaults + uMatrix which is mostly in "allow all mode"
2. uBO in medium mode (as defined by the above video) w/o uMatrix installed
I think (2) is safer than (1). I've been in (1) mode pretty much since I started using uMatrix (2 years?).
Even just installing uBO on an elderly parents computer is a tough call as low resistance usability is very important and complex use flows get harder to teach/learn.
For Chrome, you can do so here: chrome://settings/content/javascript
Unfortunately this list does not sync across installations. :(
I really resent the fact that Apple hamstrung LS with Big Sur. I get it that packet-level firewalls still work as intended, but it was really nice to be able to kill telemetry on a network level—not to mention disabling pinging data-hungry Apple services (e.g. iCloud Sync) when tethered on limited data.
The combination results in a situation in which I have control as a user over what my computer is doing, and I can interact with online services without being in complete submission to the current heinous model. It's not perfect, and it doesn't make you impossible to track or anything of the sort. But it definitely cuts down on the crap you deal with and drastically reduces your risks of being infected by malicious software.
Here's some typical examples of my interactions with the modern web:
I'll open a website and nothing will appear because nowadays it's normal to load all content through Javascript. So I'll whitelist only the site and its CDN. It still won't appear because the site will be misconfigured to not load unless googletagservices has finished loading. So then I allow google. But then some other scripts from the tens of third parties will also be necessary to load it so I'll try to randomly temporarily whitelist the least scammy looking ones until it works.
For e-commerce websites, I'll allow all scripts in the tab because I know it's a lost battle to shop without it and then during checkout I'll often be redirected to another part of the site or to a payment processor in a new tab without script privileges which won't work, so I allow scripts on this tab and reload the page but it breaks their process and now I have to start over.
With some websites I get memory leaks because of NoScript. Alibaba and Vinted were like that for a long time, I don't know if NoScript or Firefox fixed something on their end or if the websites stopped doing the stupid shit they were probably doing, but for a long time I couldn't open those without using 10s of gigabytes of ram and crashing Firefox.
I put up with all of it because I don't like being spied on but, man, am I mad that I have to go through this.
I,ve found this behavior to be strongly correlated with low-quality content, another waste of my time.
Unless I already know I want to read the site, I,ll often close the tab at this point and move on.
Chances are, nothing of value is lost.
The web with NoScript is a chore; the web without NoScript is unusable.
Yep, this would be a website I'd just not use. For e-commerce, there's always another place. Ironically, sites which do their own tracking first party (Amazon.com) are much better than sites which do not, unless they're built on a standard platform like Shopify or BigCommerce.
I'd say your model for what makes an enjoyable web experience is different than mine. I care about content, not just getting sites to load. If a site is badly built enough and lacks so much respect for me as a user, I don't care what they have to say anymore and I move on. Your approach isn't necessarily wrong, but it certainly isn't conducive to whitelisting, because you'll end up whitelisting most of the things I'd actively want to block.
It's 2020, writing a website that works properly is easier than ever, and these businesses have no excuse for how bad their sites are.
IP whitelisting isn't fool-proof though. For example, I run an anti-censorship DoH resolver "IP fronted" by Cloudflare specifically to be a hard target to block at IP layer. I mean, you can block Cloudflare's IPs but that'd mean you'd end up blocking other websites too.
This is the explanation on the Gitlab:
> We were testing an AI that could show some basic emotions about internet content, and turns out it was very precise at getting “annoyed” by ads and “unsolicited” third party connections…
> From that, I forked our own project and tweaked it in a specific way to basically only focus on ads, trackers, etc. and act like a web crawler, turns out to be very effective!
[0] https://gitlab.com/The_Quantum_Alpha/the-quantum-ad-list/-/r...
Had to whitelist api.instabug.com since with it blocked my 9GAG app goes crazy and tries to connect to it non-stop, lighting my phone on fire.
In all seriousness, I casually browse it for 30-40 minutes a day. Helps put my mind at ease here and there (although it too became heavily politicized and not as much fun as it was years ago).
P.S. 9gag in-joke, you wouldn't get it.
0: https://gitlab.com/The_Quantum_Alpha/the-quantum-ad-list/-/i...
Try Squid. It's a dynamic higher layer HTTP/web proxy that can block specific URL content, etc.
For anyone interested in using The Quantum ad-list in their adguard setups, I've added this to my self-updating ad gaurd block list generator (smashblock - which is also based on hblock).
>clients.l.google.com
>clients4.google.com
Thousands of requests though so pushed up the overall block rate by a good 5%