[HOME] [DOWNLOAD] [DOCS] [NEWS] [SUPPORT] [TIPS] [ISSUES] [DONATE]

SecBrowser: A Security-hardened, Non-anonymous Browser

Patrick via Whonix Forum:

Since editing Qubes documented is rather cumbersome(?), what about
leaving wiki page https://www.whonix.org/wiki/SecBrowser at Whonix wiki
where each of us can edit easily and only submitting a stub to Qubes
documentation?

Thats a great idea. I can put together SecBrowser basics and the
benefits of using SecBrowser as per https://2019.www.torproject.org/projects/torbrowser/design/, Security Slider etc. Gather fingerprint stats from https://browserprint.info/ and https://panopticlick.eff.org/ . The former because https://www.qubes-os.org/doc/w3m/ uses that test and mentions that the w3w browser has a fingerprint that stands out from Tor Browser i.e stands out in a crowd. I just tested SecBrowser default settings. Much better than expected

Within our dataset of several hundred thousand visitors tested in the
past 45 days, one in 76.46 browsers have the same fingerprint as yours.

Currently, we estimate that your browser has a fingerprint that conveys
6.26 bits of identifying information.

Just to be clear, no configuration instructions?

1 Like

Yes. (Since these are a moving target more easily edited in Whonix wiki.)

I consider this “bonus” too.

If there is something regarding security benefits we don’t have listed at https://www.whonix.org/wiki/SecBrowser yet that would be very cool to have indeed.

Adding that to Qubes website, well, feel free, I consider it bonus too.

Not having a strong opinion either way. There is artistic freedom and many great ways of doing this. Just an idea to reduce cumbersomeness of editing.

1 Like

In SecBrowser#Download_Alpha_Versions users are given instruction on how to install and/or user multiple text editors. However, gedit preempts that a little further up the page. I thinkk its necessary to show new users how to use a text editor but I’m not a big fan of adding those secondary instructions to the page. I think it adds clutter and to some extent confusion for beginners.

Private Browsing Mode

gedit ~/.secbrowser/secbrowser/Browser/TorBrowser/Data/Browser/profile.default/user.js

Download_Alpha_Versions

lxsu mousepad /etc/secbrowser.d/50_user.conf

gksudo gedit /etc/secbrowser.d/50_user.conf

sudoedit /etc/secbrowser.d/50_user.conf

Google Season of Docs should solve this with clickable icons that link to the corresponding man pages.

1 Like

@0brand the fpcentral site is a better test for browser fingerprint because it measures differences between versions in the TBB family exclusively compared to panopticlick which has browsers from all over the place.

2 Likes

Once https://github.com/netblue30/firejail/issues/2863 is sorted, firejailing SecBrowser by default is an option when firejail is installed (which will be the case in “hardened debian”).

(For Tor Browser in Whonix, perhaps another first start popup.)

1 Like
1 Like

Made minor changes to SecBrowser local homepage. Wiki page enhancements (download alpha versions, firejail, hardened-malloc).

Could you please modify/split https://www.whonix.org/wiki/SecBrowser for use in Debian (based) distributions vs Qubes Debian templates? Not sure if best modified or split and/or using wiki templates?

Little Qubes specific. Should work well in Debian (based) too.

1 Like

SecBrowser will keep growing so splitting with templates is the best option imo. I’ll get that sorted out.

1 Like

SecBrowser has been split into 2 pages.

1 Like

Secbrowser starter (tb-starter) from Whonix testers repository now will automatically enable use of config option tb_hardening=true which results in using hardened-malloc as well as firejail by default if packages hardened-malloc firejail and firejail-profiles are installed. Documentation was updated.

Will move to stable-proposed-updates and stable repository over time.

What should…

say?

Other pages:




Could you please set https://www.whonix.org/wiki/SecBrowser to use a “few” (fewer) templates and/or an introduction text(s) only and then link to the other pages?

Perhaps move https://www.whonix.org/wiki/Tor_Browser_without_Tor to https://www.whonix.org/wiki/SecBrowser_™_in_Windows?

And a new https://www.whonix.org/wiki/SecBrowser_™_in_macOS stub which basically says “no one looked much into it yet but look at Secbrowser for Windows”?

I’ll get it done.

How about move a copy of Tor Browser witout Tor to deprecated. Might be needed when SecBrowser.com is created (will need a “history” of SecBrowser ) :slight_smile:. Then create a page for SecBrowser in Windows based on Tor Browser witout Tor wiki.

No problem. SecBrowser dev is moving along nicely :slight_smile:

From Missing Libre Illustrative Images @TNT_BOM_BOM

Yay!

https://www.iconfinder.com/icons/520561/browser_communication_internet_network_seo_icon - cannot use. Free for commercial use but cannot sell, therefore incompatible with Freedom Software.

https://www.iconfinder.com/icons/17856/browser_icon is cool but I saw it elsewhere before (dunno which application). Therefore will not use.

https://www.iconfinder.com/icons/6546/browser_mozilla_icon reminds me (= same?) as firefox, therefore will not use.

EDIT:
https://www.iconfinder.com/icons/17856/browser_icon looks really good. Haven’t seen before. Anyone?

2 Likes

First time I’ve seen it. Very simple. I like it :wink:

Thanks for finding these TNT!
+1

2 Likes

Opted to create a new SecBrowser in Windows wiki instead of moving Tor Browser without Tor. (good practice for GSoD) The page is 95% complete. The bottom half needs to be formatted better with boxes, changes in header size etc. Added a bunch of images since this wiki is mostly for beginners imo. Will have everything complete tomorrow, Tor without Tor wiki removed and ready for review.

https://whonix.org/w/index.php?title=SecBrowser_in_Windows&oldid=49995&diff=cur

Note to self, submit bug report?? for incorrect Tor project docs.

https://support.torproject.org/tbb/how-to-verify-signature/

For Windows users:

gpgv --keyring .\tor.keyring Downloads\torbrowser-install-win64-8.5.4_en-US.exe.asc Downloads\torbrowser-win64-install-8.5.4_en-US.exe

Downloads\torbrowser-win64-install-8.5.4_en-US.exe

should be;(confirmed)

Downloads\torbrowser-install-win64-8.5.4_en-US.exe

1 Like

Wow, impressive, that’s a lot more than I expected! (Just a stub, low effort, no images.)

Done.

https://whonix.org/w/index.php?title=SecBrowser&oldid=49846&diff=cur

Already completed. Is there a way to both deprecate Tor Browser without Tor and create a redirect from Tor Browser without Tor -> https://www.whonix.org/wiki/Secbrowser ?

There is already a redirect from https://www.whonix.org/wiki/Tor_Browser_without_Tor/SecBrowser to SecBrowser proper.

Done .

https://www.whonix.org/w/index.php?title=SecBrowser_™_in_macOS&oldid=50053&diff=cur

1 Like

https://trac.torproject.org/projects/tor/ticket/31409#ticket

1 Like
1 Like

Nice looking icons. Thanks again TNT!

1 Like
[Imprint] [Privacy Policy] [Cookie Policy] [Terms of Use] [E-Sign Consent] [DMCA] [Investors] [Priority Support] [Professional Support]