SECURITY: Complete oldschool's config 2021

Last updated
Dec 5, 2021
About
Personal, primary device
Additional PC users
Not shared with other users
Desktop OS
Windows 10
OS edition
Pro
Login security
    • Password (Aa-Zz, 0-9, Symbols)
Primary sign-in
Local account
Primary user
Standard user - Limited permissions
Security updates
Automatic - allow all types of updates
Windows UAC
Maximum - always notify
Network firewall
Third-party router
Real-time protection
Microsoft Defender
Software firewall
Provided by a third-party security vendor. Refer to 'Real-time protection' for details.
Custom RTP, Firewall and OS settings
ConfigureDefender @ modified Max
TinyWall v. 3.2.3 + Windows Firewall
Malware testing
No malware samples
Periodic security scanners
EEK
HitmanPro Free
Secure DNS
Quad9 DOH
VPN
None
Password manager
Brain.exe
Little Black Book
Browsers, Search and Addons
Edge
strict tracking prevention
Privacy Badger
Brave search

Firefox
strict tracking | total cookie protection
µBO hard mode
Brave search
Privacy features enabled via settings
about:config tweaks for usability and privacy Firefox Privacy or: How I Learned to Stop Hardening and Love Strict Tracking Protection and
Yet Another Firefox Hardening Guide | Chris Xiao

Brave
Brave shields @ aggressive + per-site switches
Brave search
All internal privacy settings enabled
Maintenance and Cleaning
Windows built-in
Personal Files & Photos backup
External - Free Agent drive
Personal backup routine
Manual (maintained by self)
Device recovery & backup
Aoemi Backupper
Restore points - weekly scheduled task
Device backup routine
Manual (maintained by self)
PC activity
  1. Browsing the web. 
  2. Emails. 
  3. Shopping. 
  4. Downloading software. 
  5. Multimedia. 
  6. Streaming. 
Computer specs
Lenovo l340 i3 8145U CPU @ 2.10 GHz 2.300 GHz 8GB DDR4 RAM 1 TB HDD
Personal changelog
7-1-21 Updated config as above
7-10-21 Switched out µBO & ClearURLs for Trace
7-13-21 Switched ClearURLs for Trace in Brave
7-16-21 Updated config as above - Edge as main browser
7-18-21 Brave uninstalled
7-21-21 Reverted to µBO as sole extension in browsers.
Updated Firefox search engines
Replaced Adguard DNS with Cloudfare DNS
8-24-21 Replaced µBO with Privacy Badger
8-28-21 Configured three browsers for compartmentalization
8.30.21 Back to µBO hard mode all three browsers
9.29.21 Back to Microsoft Defender and NextDNS
10.1.21 Added VoodooShield Pro
11.11.21 Removed VoodooShield & added TinyWall. Switched to Trace from µBO in Edge.
21.12.5 Replaced Trace with Privacy Badger
Feedback Response

General feedback

Andy Ful

Level 73
Verified
Trusted
Developer
Dec 23, 2014
6,282
42,865

Hi oldschool,​

VS + Defender default is enough - you can have similar protection as with SWH + ConfigureDefender MAX. Adding ConfigureDefender settings and SWH will not improve much the protection.

You could probably keep RunBySmartscreen, due to improved anti-DLL hijacking protection. But in the home environment, DLL hijacking is very rare as an initial attack vector, and in most cases, the infection chain will be already broken by VS.:)(y)
 

Jan Willy

Level 7
Jul 5, 2019
316
1,388

Hi oldschool,​

VS + Defender default is enough - you can have similar protection as with SWH + ConfigureDefender MAX. Adding ConfigureDefender settings and SWH will not improve much the protection.

You could probably keep RunBySmartscreen, due to improved anti-DLL hijacking protection. But in the home environment, DLL hijacking is very rare as an initial attack vector, and in most cases, the infection chain will be already broken by VS.:)(y)
Somehow it does remind me of the motto 'keep it simple'. ;)
 
Last edited:

SecureKongo

Level 23
Verified
Feb 25, 2017
1,244
8,672
Hey oldschool,

I saw you using the Trace extension before and I am tempted to test it out even tho it's an extension against fingerprinting. From what I've seen it randomzes fingerprints by adding fake values (which actually seem pretty well thought through) instead of blocking like many other extensions do. As those values are mostly updated after site refresh or browser restart, it doesn't even matter if those values make you more unique as they are changed regularly anyway. Did you have any negative experiences lately or are you just trying to use as few extensions as possible?
 

oldschool

Level 63
Verified
Mar 29, 2018
5,252
38,334
From what I've seen it randomzes fingerprints by adding fake values (which actually seem pretty well thought through) instead of blocking like many other extensions do.
If you don't select custom RGBA settings it will always randomize.
As those values are mostly updated after site refresh or browser restart, it doesn't even matter if those values make you more unique as they are changed regularly anyway.
Don't know since I never checked.
Did you have any negative experiences lately
I haven't used it in a while. My experience is you have to be thorough in your settings selection, e.g. for each protection --> "runs by default" vs "runs when enabled", etc. and then check performance according to your browsing habits.
or are you just trying to use as few extensions as possible?
Indeed, I'm using only µBO.
 

oldschool

Level 63
Verified
Mar 29, 2018
5,252
38,334
After testing various extensions I recently settled on Privacy Badger in Edge because I'm lazy, like that it's set-and-forget and compliments strict tracking protection very nicely. No broken websites, no ads and a trusted developer. :cool:

Also, I've been using VoodooShield 6.82 beta (7.0) for beta testing purposes. Autopilot settings --> very quiet, no FPs, no annoyances. (y)
 
Top