Brave Browser release info

silversurfer

Level 85
Verified
Honorary Member
Top Poster
Content Creator
Malware Hunter
Well-known
Aug 17, 2014
10,057

Brave Release Notes V1.19.92 (Feb 5, 2021)

  • Upgraded Chromium to 88.0.4324.152. (#13969)
 

silversurfer

Level 85
Verified
Honorary Member
Top Poster
Content Creator
Malware Hunter
Well-known
Aug 17, 2014
10,057

Brave Release Notes V1.20.103 (Feb 10, 2021)

  • Added extension support for Tor windows. (#2761)
  • Added “IPFS public gateway address” setting under brave://settings/extensions. (#11563)
  • Added “Redirect IPFS resources to the configured IPFS gateway” setting under brave://settings/extensions. (#11564)
  • [Security] Enabled Safety Tips component. (#12999)
  • [Security] Removed connection to https://accounts.google.com when enabling Brave Sync. (#12984)
  • [Security] Fixed Greaselion being enabled by default in private mode. (#13506)
  • [Security] Fixed Crypto Wallets being enabled by default in private mode. (#13279)
  • [Security] Fixed mixed content connections not being auto-upgraded when available. (#10190)
  • [Security] Fixed Tor Onion-Location header issue as reported on HackerOne by Muneaki Nishimura. (#13828)
  • Implemented onboarding tour for Brave Rewards. (#12459)
  • Enabled Crowd Deny component. (#13426)
  • Enabled Widevine component updater on Linux. (#7081)
  • Updated macOS application icons. (#13005)
  • Disabled Wayback Machine infobar on Wayback Machine URLs. (#13306)
  • Removed unsupported components from brave://components. (#8709)
  • Fixed webview crash on exiting brave://adblock in certain cases. (#13775)
  • Fixed intermittent crash in Greaselion service on shutdown. (#13906)
  • Fixed in-line tip buttons being displayed when the Brave Rewards icon is hidden. (#13341)
  • Fixed inability to create sync chain due to leading and trailing whitespace in code words. (#10860)
  • Fixed automatic update failing for Google components. (#10464)
  • Fixed autoplay blocked indicator incorrectly being displayed in certain cases. (#13167)
 

silversurfer

Level 85
Verified
Honorary Member
Top Poster
Content Creator
Malware Hunter
Well-known
Aug 17, 2014
10,057

Release Notes V1.20.108 (Feb 19, 2021)

  • [Security] Fixed DNS leak regression in Tor windows as reported on HackerOne by xiaoyinl. (#13527)
  • [Security] Fixed ISP DNS leak when shields are enabled. (#12575)
  • Removed “x-client-data” header from requests in certain cases. (#8049)
  • Fixed crash when using OS zoom function on macOS in certain cases. (#8149)
  • Fixed crash when using digital keyboard on macOS in certain cases. (#7546)
  • Upgraded Chromium to 88.0.4324.182. (#14187)
 

silversurfer

Level 85
Verified
Honorary Member
Top Poster
Content Creator
Malware Hunter
Well-known
Aug 17, 2014
10,057
Brave Release Notes V1.20.110 (Feb 24, 2021)
  • [Security] Fixed issue when visiting “.onion” URL in a normal window would cause DNS leak. (#14261)
  • Fixed crash when opening “.onion” link in certain cases on Linux. (#13736)
  • Fixed ledger process incorrectly starting when visiting certain sites. (#14307)
  • Upgraded Chromium to 88.0.4324.192. (#14302)
 

Gandalf_The_Grey

Level 76
Verified
Honorary Member
Top Poster
Content Creator
Well-known
Apr 24, 2016
6,506
The implementation in Brave is not designed to be a full replacement for Tor Browser. The company notes on its support page that its browser "does not implement most of the privacy protections from Tor Browser" and that it "recommends using Tor Browser instead of Brave Tor windows" for "absolute anonymity".

One user discovered last week that Brave was leaking information in Tor mode. The user suggested that Brave Browser was leaking the address of sites visited in the mode and the IP of the requester. Brave attempted to resolve .onion domains through traditional DNS look-ups, something that should not happen according to the user.

The new update addresses the privacy issue. Brave engineers fixed the issue so that the information is no longer leaked when the browser's Tor mode is being used.

The company's recommendation to use Tor Browser for full anonymity still stands.
 

silversurfer

Level 85
Verified
Honorary Member
Top Poster
Content Creator
Malware Hunter
Well-known
Aug 17, 2014
10,057
Brave Release Notes V1.21.73 (Mar 3, 2021)
  • Added default browser dialog on first run for macOS and Linux. (#12679)
  • Added ability to uninstall/disable the Widevine plugin via brave://settings/extensions (Muon parity). (#2791)
  • Added settings panel to Brave Rewards onboarding tour. (#13379)
  • Added “Peer ID” and “Version” under brave://ipfs. (#13839)
  • Added “Repo Stats” under brave://ipfs. (#13528)
  • Added support for overriding default network adblocking using custom exception rules in brave://adblock. (#5440)
  • Added additional padding to the new tab button. (#13835)
  • [Security] Enabled Safe Browsing endpoint for extension block list. (#12297)
  • Implemented cosmetic filters. (#13070)
  • Enabled DNS-over-HTTPS UI on Linux. (#13617)
  • Updated referral system to skip initialization when no referral code present. (#14428)
  • Updated frequency to show Brave as default browser dialog when not already configured. (#12203)
  • Updated User Agent farbling to add workers support. (#12392)
  • Updated wording on Brave Rewards widget. (#13397)
  • Removed known Olytics tracking parameters from URLs. (#13644)
  • Removed known tracking parameter “wickedid” from URLs. (#13647)
  • Fixed crash when clicking on profile icon in certain cases. (#13762)
  • Fixed Monthly Statement showing incorrect month in drop down. (#13590)
  • Fixed issue where “Estimated pending rewards” showed incorrect balance in certain cases. (#13601)
  • Fixed regression which allowed some network requests initiated by service workers to bypass adblocking. (#13781)
  • Fixed adblock rules not being applied to HTTP subresources of an IPFS page. (#13742)
  • Fixed Brave Shields being disabled when using IPFS with local node. (#13741)
  • Fixed ipfs:// background tabs not re-connecting on session restore in certain cases. (#13519)
  • Fixed Binance widget and autocomplete always using “en” URLs for all locales. (#9691)
  • Fixed issue where query parameters and fragments were removed from IPFS URLs. (#13722)
  • Fixed Nightly shortcut opening the wrong version when there are multiple installations of Brave on Linux. (#1746)
  • Upgraded Chromium to 89.0.4389.72. (#14412)
 

HarborFront

Level 71
Verified
Top Poster
Content Creator
Oct 9, 2016
6,014
I don't think the latest Brave release has removed User-Agent Client Hints which is a tracking feature released with Chrome 89

“User-Agent Client Hints — designed to provide sites with information about a “user’s device or conditions” without needing to use the User-Agent String.”

Read


Read the comments inside the below link

Here is what is new in Google Chrome 89​


 

HarborFront

Level 71
Verified
Top Poster
Content Creator
Oct 9, 2016
6,014
You can test Client-Hints here


Note inside the above link

Quote

HTTP Client Hints are currently only available in Chrome and some Chromium-based web browsers. User-Agent Client Hints are only under enable-experimental-web-platform-features Chrome flag.

If the User-Agent Client Hints feature is enabled, it will also expose a new JavaScript interface accessible through the navigator.getUserAgent() promise.

Unquote

My Ungoogled Chromium v88.xx showed up this. Anyway there’s a request over at UG forum to remove this.

1614877666595.png


For comparison, FF and LibreWolf browsers showed up the same below

1614875070666.png


Can someone test it with Brave browser and post here? Thanks
 
Last edited:

silversurfer

Level 85
Verified
Honorary Member
Top Poster
Content Creator
Malware Hunter
Well-known
Aug 17, 2014
10,057
You can test Client-Hints here


Note inside the above link

Quote

HTTP Client Hints are currently only available in Chrome and some Chromium-based web browsers. User-Agent Client Hints are only under enable-experimental-web-platform-features Chrome flag.

If the User-Agent Client Hints feature is enabled, it will also expose a new JavaScript interface accessible through the navigator.getUserAgent() promise.

Unquote

My Ungoogled Chromium showed up this. Anyway there’s a request over at UG forum to remove this.

View attachment 254958

For comparison, FF and LibreWolf browsers showed up the same below

View attachment 254959

Can someone test it with Brave browser and post here? Thanks

I really don't care about features for Privacy in browsers as I believe it's almost impossible... anyway, my test below (NO browser extensions installed)

b#1.png
b#2.png
 

silversurfer

Level 85
Verified
Honorary Member
Top Poster
Content Creator
Malware Hunter
Well-known
Aug 17, 2014
10,057
Brave v1.21.74 (Mar 6, 2021)
Full Release Notes
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top