hetzlemmingsworld

joined 5 months ago
 

Some feedback regarding Proton VPN documentation and some confusion regarding Firefox DNS configuration:

https://protonvpn.com/support/browser-extensions#firefox says:

"By default, Firefox does not route DNS queries through the HTTPS connection to our VPN servers" and then is mentioned a workaround to fix it.

That suggest alarming thing, that ProtonVPN Firefox user has to do some custom workaround in order to be private (prevent a DNS leak).

On another hand, https://protonvpn.com/support/dns-leaks-privacy says:

"DNS queries are routed through the VPN tunnel to be resolved on our servers"

these statements are a bit confusing/contradicting (though Proton later explains that this latest statement does not apply on a browser extension VPN apps) and Proton further adds at https://protonvpn.com/support/dns-leaks-privacy/#dns-over-https that the DNS leak can happen also due to enabled DoH feature in web browser.

Solution: ProtonVPN browser extension should (if possible) warn user in case it fails to process DNS and as a result, it is leaked. Vote for this feature request


Another "issue" is with the above mentioned/linked workaround (here I am speaking only about Firefox), this workaround: go to "about:config into the URL bar and hit . At the warning, click Accept the risk and continue → search for network.trr.mode"

In my case I had this set that variable to 5 which means DoH "Off by choice", Proton in said tutorial suggest value 3 instead, which means (According to https://wiki.mozilla.org/Trusted_Recursive_Resolver#DNS-over-HTTPS_Prefs_in_Firefox ) "Only use TRR, never use the native resolver.".

This confuses me since it looks like an opposite to what i have now, while any DNS leak site:

https://www.dnsleaktest.com

https://ipleak.net

does NOT report leak in my case nor in case i set network.trr.mode to 3. A bit weird but i guess no big deal?

Thanks for your feedback in advance.

6
submitted 4 months ago* (last edited 4 months ago) by hetzlemmingsworld@lemmings.world to c/security@lemmy.ml
 

Reposted from: https://lemmings.world/post/10865023

1. Recognize the common signs

• Urgent or emotionally appealing language • Requests to send personal or financial information • Unexpected attachments • Untrusted shortened URLs • Email addresses that do not match the supposed sender • Poor writing/misspellings (less common)

2. Resist and report Report suspicious messages by using the “report spam” feature. If the message is designed to resemble an organization you trust, report the message by alerting the organization using their contact information found on their webpage.

I have found also these phishing reporting pages:

SITE: https://safebrowsing.google.com/safebrowsing/report_phish/

SITE: https://www.ncsc.gov.uk/section/about-this-website/report-scam-website

SITE: https://www.scamwatcher.com/scam/add?type=fraudulent_website

SITE/EMAIL: https://report.netcraft.com/report ( scam [*AT*] netcraft [*D0T*] com - for a phishing/fraud mail forwarding )

EMAIL: https://www.ncsc.gov.uk/collection/phishing-scams/report-scam-email#section_1 - forward phish mail to report [*AT*] phishing [*D0T*] gov [*D0T*] uk

EMAIL: https://apwg.org/reportphishing/ ( reportphishing [*AT*] apwg [*D0T*] org - forward phishing mail as attachment if possible )

EMAIL: phishing-report [*AT*] us-cert [*D0T*] gov (phishing message should be sent as attachment possibly or its full source code in a message BODY.)

OTHER: https://www.knowbe4.com/free-phish-alert (email client extension)

feedback or new additions are welcome

3. Delete Delete the message. Don’t reply or click on any attachment or link, including any “unsubscribe” link. The unsubscribe button could also carry a link used for phishing. Just delete


Source: https://www.cisa.gov/secure-our-world/recognize-and-report-phishing

Send this to your friends, especially internet beginners.

 

If anyone wants to check, here is a video showing a Firefox dev. console (F12 key) and errors occured on https://www.openstreetmap.org/search?query=Oslo#map=8/59.973/10.723

I would like to find the causing extension without the need of disabling extensions randomly or by disabling half of extensions, then if issue solved, disable half of that half etc..

Sometimes it helps to hover over the link near the error on dev. console (F12 key), Console tab, to see the moz-extension://somestring and find first characters of the string at page about:debugging#/runtime/this-firefox Though this time, it does not show that IMO (per the linked video).

If I should click something particular in a FF dev. console (F12), please guide me. Thank you.

Thx, I have found that the small to medium Lemmy instances are NOT aware about the post, yet most of big instances are. So it fits what has been said: "New posts and comments should always propagate if at least one user is subscribed to the community." - big instances and old instances has higher likelyhood of someone being subscibed to it prior to me posting the post, so the instance could download that post. Related topic: What are the conditions for the Lemmy post to be distributed to other Lemmy instances?

 

3 password managers at same time 🧐 :

My older version of a Firefox browser remember most of my passwords (I am ok how it works), but some important passwords are also stored in KEEpass and not in Firefox. Then there is a ProtonPass which can import both Firefox CSV and KeePass XML.

Problem with import and synchronization of these managers is that the

  1. Pass is not made to deduplicate the imported data (some imported logins may already be in vaults), which requires user to delete Pass logins prior importing a .csv file (importing because file contains more up to date logins).

  2. import does not contain 2FA secrets nor aliases (aliases deleted in Pass can not be restored into Pass at the time of writing - June 2024).

Firefox and Proton Pass - PROS and CONS (as of June 2024):

Quality of suggested logins:

⛔️ Firefox (old ver.) suggests all passwords saved across whole website incl. its subdomains which is messy

✅ Pass: suggests only passwords for a present page (not subdomains) = good

⛔️ Pass: does not automaticaly complete/suggest login when typing into username field and the list of saved logins is not alphabetically sorted by the username.

Speed:

✅ Firefox: shows saved logins instantly

⛔️ Pass: 1 second delay of a Proton Pass drop down menu with login username suggestions comparing to Firefox which loads immediately and gives impression that it loads even before login page finished loading. Both password managers loads at same time on user mouse click into the login field. Delay of a ProtonPass happens only when the suggestion menu should appear automatically upon loading a login page.

Registration form suggestions:

✅ Firefox: suggests previously used usernames/emails when typing, which is fine

🆗 Pass: does suggest anything when i type, as already mentioned. When I click, it suggests main ProtonMail address and allows generating unique alias which is very important key feature

🆗 Pass: password generating box shows non-important confirmation of a successfully copied password, which hides after like 2 seconds, making impossible to read the next form field during that time, which is annoying.

Login form suggestions:

⛔️ Pass: does not offer any login suggestion on a Basic HTTP Auth (.htaccess password protection of a directory) forms (popup) of mine (site: ILF admin, C*A/my)

Other:

⛔️ Pass: in Firefox i think it sometimes gets logged out requring to spend time re-login which may require 2FA auth from other device or other password manager.

✅ Pass: editing, grouping of passwords seems a bit better than Firefox

✅ Pass: Integrated 2FA

✅ Pass: Pass monitor in paid plan, password strength/leak indication

PROS vs CONS. What to do?

ProtonPass is a bit slower than Firefox, yet it has its advantages - email alias generating, 2FA....

SimpleLogin browser extension can be used for Proton aliases and if you do not need 2FA, it may be easier to stay with just Firefox, which is enough safe manager since I am already making backups of a Firefox (incl. passwords - which are also synced E2EE to the Mozilla cloud https://support.mozilla.org/en-US/kb/sync#w_is-it-secure).

Other option is to use Pass only for aliases and 2FA and inside its General settings, disable passwords saving and filling, letting Firefox do this job.

Third manager (for example KeePassXC) can serve as a backup, it can also import exports of Pass and Firefox. I guess it would be good to backup any password manager (incl. Pass) data regularly on schedule.

What are your suggestions/feedback regarding this?

 

After removing all passwords under three dots/kebab menu in the top corner of the page "about:logins", i wanted to import passwords from a Proton Pass to see how it works. Yet there is no import menu entry. After researching, I have found a solution that I want to share:

go to "about:config" page, and search for "signon.management.page.fileImport.enabled". Set it to true by double clicking on "false". Reload "about:logins" page to see the import menu entry under three dots corner menu.

 

Firefox 115.12.0esr with Pass 1.17.4

On various pages including https://lemmy.ml/signup when I click 1st time into a email or password field, Pass shows a "suggestion" box, when I click one more time into that form field, the box now fails to hide even i click outside of it. Workaround is to click into different form field.

Anyone is experiencing the same? On which platform/pass version?

https://lemmy.ml sidebar shows "4.49K Communities; 129K Posts; 557K Comments" Maybe only admin can discover accurate number of indexed pages by adding their site into a Google/Bing webmaster tools and verifying the site ownership.

[–] hetzlemmingsworld@lemmings.world 1 points 5 months ago* (last edited 5 months ago) (1 children)

I think that when I am having link like https://lemmings.world/post/10530999 or knowing a title of the post, i can not discover in which community it has been posted... When I check same number of post on different instance: https://lemmy.ml/post/10530999 it does NOT work. Yet the search works: https://lemmy.ml/search?q=10530999 is there no other/easier way than opening one big instance after another (for example from the list https://lemmyverse.net/?order=posts&open=true ) and use search like that?

[–] hetzlemmingsworld@lemmings.world 1 points 5 months ago* (last edited 5 months ago) (3 children)

What are the steps to discover it knowing ONLY lets say "lemmings.world/post/10530999" and nothing else. If that is not possible, then knowing title "Dead Lemmy instance, how/where to find backup of the post that was on the offline instance?" and mentioned URL, while not knowing parent community name or the instance from which the post originated.

[–] hetzlemmingsworld@lemmings.world 0 points 5 months ago* (last edited 5 months ago) (1 children)

Not local data, question is meant from a regular visitor point of view (not necessarily an instance admin).

 

Reposted from: https://lemmings.world/post/10530999

Please what are the easiest and fastest steps in order to find backup of a currently unavailable post thanks to no longer running Lemmy instance?

Lets say it is this post we are reading, that become offline. I am not asking for the links to instances that hosts it, but for the way on how to discover all the instances myself.

So far I have found only this way:

  1. open largest instances list: https://lemmyverse.net/?order=posts&open=true
  2. open one after another and under magnifier button, search for the same post ID (number) as your dead link has

OF opinion: good not to be adicted to it or to anything actually.

 

A quick look at the https://join-lemmy.org/docs/administration/federation_getting_started.html does not answer that question. Though at least ChatGPT has an opinion (which may be misleading) 😀

the probability of it (the post) being distributed on multiple instances depends on factors such as the popularity of the post, the number of upvotes and comments it receives, and how widely it is shared across different instances. Posts that generate a lot of engagement and discussion are more likely to be distributed on multiple instances, as they are more likely to be shared and reposted by users. Additionally, posts that are deemed relevant or controversial may also be more likely to be spread across multiple instances.

I am unsure what it means by shared (i assume just posting a link is not enough).

If that is true that reposted (often called cross-posted) post makes a fully "featured" copy/backup on a different Lemmy instance, is there anything else that does it? Thank you

 

Please what are the easiest and fastest steps in order to find backup of a currently unavailable post thanks to no longer running Lemmy instance?

Lets say it is this post we are reading, that become offline. I am not asking for the links to instances that hosts it, but for the way on how to discover all the instances myself.

So far I have found only this way:

  1. open largest instances list: https://lemmyverse.net/?order=posts&open=true

  2. open one after another and under magnifier button, search for the same post ID (number) as your dead link has. One can also search for the post title (while making sure that the search scope is everywhere, not local).

 

Summary: I wanted to see if I can synchronize Firefox and ProtonPass passwords. It works more or less. One just need to pay attention to using only one or another for saving passwords and if later wanted to switch, just delete outdated app passwords database and import other app passwords. NOTE: If you choose to delete ProtonPass logins and import 3rd party logins, it will possibly NOT import your 2FA secret and aliases (you would have to move these to a separate vault before deleting everything else!

Here is exactly written on what i did and what I have faced in July 2024 (maybe later version of the Proton Pass will work better).

After backing up Firefox browser data/profile and exporting its passwords at "about:logins" page (three dots in the top corner), i have deleted all Firefox passwords (from same three dots menu). Then enabled Firefox passwords import (there were no import entry in that three dots menu) by going to "about:config" and searching for "signon.management.page.fileImport.enabled" double-clicking "false" to set it to "true". Reloaded "about:logins" page and then again using three dots menu imported the .csv export file made by the Proton Pass. Result:

            New logins added: 1,808
            Existing logins updated: 0
            Duplicate logins found: 28 (not imported)
            Errors: 12 (not imported)

Under details, i could see which rows was problematic (only problem type was "Missing url") and after opening .csv file in a Calc editor i could see that the problematic rows were indeed "missing url" (or anything) in "url" row but the "name" field had the domain name. The problematic rows were almost exclusively Proton aliases (and these does not need any fixing and their later import into Proton Pass failed anyway - in the current version of the Pass that I have used), yet not knowing that at the moment, I have fixed all rows with missing url by copying name into url and prefixing with https:// using Linux command:

awk 'BEGIN{FS=OFS=","} $3=="" {$3="https://" $2} 1' "input.csv" > output_tmp && mv output_tmp "output.csv"

For Windows, this may work: for /f "tokens=1-7 delims=," %a in (input.csv) do @echo %a,%b,%c,%d,%e,%f,%g,%h,%i >> output_tmp && move /y output_tmp output.csv

Upon import of the fixed file, there was same number of errors and this time it was "Missing password".

I did insert a random passwords by modifying previous command like this: awk 'BEGIN{FS=OFS=","} $5=="" {$5="ng21@Ak" $9} 1' "input.csv" > tmp && mv tmp "output.csv"

.csv file can be opened inside LibreOffice Calc (or other table processor), where it is visible in easy to read format.

So after all, import from Proton Pass using .csv file was successful (despite a few harmless errors).

Opposite direction - synchronizing from Firefox to ProtonPass may be problematic. At least in my case was. Because Proton Pass did not delete any duplicates. So if Proton Pass is outdated and Firefox has all ProtonPass items(logins) + new items, it can be done as follows, yet please note that deleting Pass logins and importing 3rd party app logins (Firefox) will possibly not import 2FA settings, so if you are using 2FA, make sure you save private keys so you can setup it again later - keys are visible when editing login with 2FA): Export Proton Pass for backup purpose. Create new vault and move to it all email aliases (meaning aliases not regular logins). Delete vault with logins and create new one and fill it with Firefox .csv file.

 

When there is only one vault in Proton Pass, it seems like the option to Delete vault is inactive/disabled and can not be clicked.

After creating second vault, it worked to delete first (main one). It is a bit weird, no explanation why i was unable to delete.

 

přeposláno z: https://lemmings.world/post/10376607

Having account on https://lemmings.world, like 10 hours ago I have been trying to post a reply in a community that is hosted on a different instance (monero.town), the progress wheel was constantly turning on the Repply button and the browser developer console (F12) shown Error 502 Bad gateway ("invalid response from the upstream server" - https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/502). "Bad gateway" error is shown by the Lemmy on login form at lemmings.world.

That turning wheel also appears on a new post/topic submission button (creating topic on external lemmy.ml community being on lemmings.world ).

After trying to search in my home instance, https://lemmings.world/search?q=502+error&type=All&listingType=All&page=1&sort=TopAll It output nothing and the console again shown Error 502:

...

GET https://lemmings.world/api/v3/resolve_object?q=502 error [HTTP/1.1 502 Bad Gateway 0ms]

XHRGET https://lemmings.world/api/v3/user/report_count? [HTTP/1.1 502 Bad Gateway 0ms] ...

Maybe ask them to establish private (end to end encrypted - E2EE) communication channel by using PGP or ask them to use the service like proton.me which has E2EE mail. If they know some answer to your question, you can send them link to an password protected paste at https://bin.disroot.org

Thanks, I see that the cross-posting works like this: "In order to cross post, I need to first create the post in one community, then after I create the post, I can click the two nested squares icon under the title of the post (with the pop-up text “cross post”) that shows up on mouse-over." https://lemmy.world/post/354611

[–] hetzlemmingsworld@lemmings.world 1 points 5 months ago* (last edited 5 months ago)

I guess You mean to create new mod rights request discussion topic inside the community, where i want mod rights (seems like an unsolicited way that pings and spends time of all members)

Regarding contacting instance admins in case community has no active mods, i assume i go to parent instance (in this case https://lemmy.ml/ ) and scroll down to see the list of "admins:" in the sidebar. I click one, it says "You are not logged in. If you use a Fediverse account that is able to follow users, you can follow this user." I am unsure how to follow ext. user via my home instance yet i have found this kind of URL: https://lemmings.world/u/username@external.instance (assuming my instance lemmings.world) and on it is a New message button that seems to be working. So it does not seems to be easy to contact custom external instance user who's post i can not see on my instance. UPDATE: I can do it by using search icon and pasting: @username@external.instance (for the community, i use !community@external.instance) - this method is not apparent to a newbie

[–] hetzlemmingsworld@lemmings.world 2 points 5 months ago (1 children)

no, when i use ! like this: https://lemmings.world/c/[!qbittorrent@lemmy.ml](/c/qbittorrent@lemmy.ml) then it returns error "couldnt_find_community"

view more: next ›