Advanced Plus Security poopdookie laptop Security Config 2021

Last updated
Feb 19, 2021
How it's used?
For home and private use
Operating system
macOS 11 Big Sur
On-device encryption
Log-in security
    • Biometrics (Windows Hello PIN, TouchID, Face, Iris, Fingerprint)
Security updates
Check for updates and Notify
User Access Control
Smart App Control
Network firewall
Real-time security
Cylance Smart AV
Cleanmymac X
Heimdal Foresight *network filtering*
Adguard Pro
Firewall security
Built-in Firewall for Mac/Linux
About custom security
Adguard Home for DNS
Asus Aiprotect (Trendmicro)
Periodic malware scanners
Cleanmymac X
Malware sample testing
I do not participate in malware testing
Browser(s) and extensions
Brave (enpass, burnermail, prowritingaid, floccus)
Safari (enpass, magic lasso, honey, prowritingaid)
Secure DNS
Adguard Home (rpi4)
Clean browsing security (primary)
Quad 9 (secondary)
Desktop VPN
Windscribe (spam, malware blocking enabled) sometimes used
Veepn (spam, malware blocking enabled) *browser plugin*
Password manager
enpass
Maintenance tools
Cleanmymac
Sensei
File and Photo backup
Arq backup>Pcloud (thrice daily)
webdav>Pcloud (in the clear backups for non sensitive)
System recovery
Local usb to laptop
Risk factors
    • Browsing to popular websites
    • Opening email attachments
    • Buying from online stores, entering banks card details
    • Logging into my bank account
    • Downloading software and files from reputable sites
    • Browsing to unknown / untrusted / shady sites
    • Sharing and receiving files and torrents
    • Working from home
    • Streaming audio/video content from trusted sites or paid subscriptions
Computer specs
Macbook pro 15" 2017
2.7 Quad core i7
Radeon Pro 450
500GB
16GB ram
What I'm looking for?

Looking for minimum feedback.

F

ForgottenSeer 85179

In my opinion you add too much attack surface to your secure macOS
Mainly because of
  • Visiting unknown sites
  • File sharing

Keep it more clean for higher security. macOS is already very secure and Safari is best browser already.
Better secure your system with internal hardening.
I also wonder why you use three different login types.

Else, nice to see another Apple system (y)
 

Brahman

Level 17
Verified
Top Poster
Well-known
Aug 22, 2013
823
Enable doh in adguard home on that rpai ( imho nextdns- and Block Newly Registered Domains (30 days) in settings which will provide you protection from most phishing sites). With adguard home, "Heimdal Foresight *network filtering*" is an overkill. If you are paying for it, it a waste of money. you can get almost or more protection from adguard home with doh ( of nextdns).
 

poopdookie

Level 2
Thread author
Feb 11, 2021
90
Thanks for the feedback, my build is a kind of LTD/Stack social build, Cylance was LTD, Heimdal LTD (which catches a lot of stuff the others just miss), cleanmymac X LTD (to date has not caught anything) and adguard pro LTD. Thanks for the feedback ill check out NextDNS again.
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top