Forum Discussion
Extend supported browsers list
With all of the major browsers now seemingly being actively user-hostile, something needs to be done. LibreWolf is a solid choice, although their defaults are a bit too aggressive from my perspective, but better that than being overly permissive.
Until recently, I was content to neuter Firefox myself, using a LibreWolf-inspired set of policies and locked preferences, but as Firefox becomes more user-hostile they're making keeping up with this more of a challenge and the "it takes a village" approach of LibreWolf spreads the load.
1Password is the biggest dealbreaker for me, I use a strong password, and I'm just not up for typing it dozens of times a day, so I'm left with the choice of going with a minimal password, hardcoding it into a hardware key that I can smack as needed, or switching to a more user-focused password manager.
I understand the risks, and I'll take it on, I am balancing this against the threats of browsers in their current state.
A simple solution would be to check the hash of the browser's EXE and allow me to trust that hash in that exact location on disk, such that if it is changed unexpectedly, I'll be aware of it. Since LibreWolf doesn't self-update without the user being aware, and since it requires elevation to an administrative session to upgrade, the reality is that by the time someone can compromise my browser's EXE, they've already won.