|
|
|
|
|
by cookiengineer
1859 days ago
|
|
> uBlock Origin already performs CNAME decloaking and blocks this approach, it’s pretty cool. ... which in return is a static list of domains which needs to be regularly updated, and therefore is not really failsafe. uBlock0 uses Adguard's scraped dataset [1] as a fallback source to do this, as Chrome Extensions cannot make DNS requests without a DNS-via-HTTPS endpoint. Firefox, however, has provided the `dns` API [2] to do requests via the native OS resolver (which in return is also not failsafe due to being unencrypted plain-old-manipulateable DNS UDP requests) [1] https://github.com/AdguardTeam/cname-trackers [2] https://developer.mozilla.org/en-US/docs/Mozilla/Add-ons/Web... |
|