4 ms·
> to quote someone from IRC "millions of kids can now learn how to configure DNS". That's why you set up your router/pihole to do DNS hijacking. Any DNS reque
by taborj 7y ago
> to quote someone from IRC "millions of kids can now learn how to configure DNS".
That's why you set up your router/pihole to do DNS hijacking. Any DNS request gets rerouted to the DNS server of your choosing.
- kart23 7y agoTheres an easy way to get around this too, firefox has the option to do dns over https, encrypting your dns queries, and if you force encrypted SNI, theres no way your DNS queries are getting hijacked and the router cannot see what sites you are visiting. And no, this doesn't require someone to be technical, and a kid could do it easily. Whats even more interesting is that schools and other public internet places can no longer block certain websites or content, and logs are no longer effective since even the website address is encrypted. You can stop ESNI by disabling https altogether, but obviously that wouldn't be a reasonable solution. Source: my dad did this on the home router.
- Corrado 7y agoThen again the goal is to not completely lock down the system so that no one could ever abuse it. Its more like the lock on your front door; it can be worked around (ie. picked, broken, etc.) but you still install it.