4 ms·
Ublock origin is the way to go for Adblock extensions. Also, NextDNS is way more flexible than pihole since you don’t need to host anything. AdGuard DNS provide
by syntaxing 3y ago
Ublock origin is the way to go for Adblock extensions. Also, NextDNS is way more flexible than pihole since you don’t need to host anything. AdGuard DNS provides the same service. Both are priced at $20/year and its money well spent IMO. NextDNS provides 300K queries per montb for free. With cache, that should last one person for one month.
- hedora 3y agoOf course, NextDNS and AdGuard are indistinguishable from a watering hole attack. (I've never heard of them; this is a fundamental problem with using centralized "privacy preserving" services.) https://en.wikipedia.org/wiki/Watering_hole_attack https://en.wikipedia.org/wiki/Watering_hole_attack I think ublock origin is a bit better, in that it is open source. Does it support reproducible builds though?
- akyuu 3y agoNextDNS and AdGuard DNS are just DNS providers that return filtered results for ad-related DNS queries. Their filter lists are public: https://github.com/orgs/nextdns/repositories?type=all https://github.com/orgs/nextdns/repositories?type=all https://github.com/AdguardTeam/AdGuardSDNSFilter https://github.com/AdguardTeam/AdGuardSDNSFilter If you don't trust their DNS servers for whatever reason, you can simply add these entries to your hosts file to replicate their functionality locally.
- ameshkov 3y agoSorry for jumping in but since AG is mentioned. If you want to have all the data under you control, there's this: https://github.com/AdguardTeam/AdGuardHome https://github.com/AdguardTeam/AdGuardHome Regarding open source, AdGuard DNS actually is: https://github.com/AdguardTeam/AdGuardDNS https://github.com/AdguardTeam/AdGuardDNS In the case of AdGuard DNS being open source does not change the fact that it is a centralized service and using such a service is a matter of trust.
- syntaxing 3y agoAdGuard home or pihole does not prevent “watering hole attacks” (honestly feels like paranoia more than safety but whatever). At the end of the day, you need a DNS for non filtered sites which AdGuard home and pihole uses cloudflare by default.
- NoZebra120vClip 3y agoLook, either my ISP's DNS servers are a watering hole attack or the NextDNS servers I subscribe to are a watering hole attack. I've got to use someone's watering hole. Why should I trust my ISP more?
- whatwhaaaaat 3y agoBecause you are the customer of your isp vs being the product of a free extension?
- NoZebra120vClip 3y agoI am not the product of a free extension, whatever that means. I am a NextDNS subscriber. That makes me just as much their customer as my ISP's. Besides, I don't know what a paying-customer relationship has to do with trust. I could just as easily be betrayed by someone I'm paying. For example, GrubHub drivers have a chronic problem of "losing" my drinks, despite being promised a tip and wages. I have to go chase refunds every day for these "mistakes". I'm a paying customer, yet I can't trust them to get my order right.
- wintermutestwin 3y agoIn the US, our ISPs lobbied our government to allow them to sell our data. I am literally forced to give money to my enemy to use the internet.
- syntaxing 3y agoIt’s a DNS…you have to use one regardless of what you do. Your pihole is passing any nonfiltered and white list to cloudflare or google DNS to begin with (or worse, your ISP DNS).
- Svenskunganka 3y agoThere's also Mullvad's adblocking DNS service, which contrary to their VPN product is free for anyone to use: adblock.dns.mullvad.net They have more variations like social media block and instructions for using it at https://mullvad.net/en/help/dns-over-https-and-dns-over-tls/ https://mullvad.net/en/help/dns-over-https-and-dns-over-tls/