this post was submitted on 11 Mar 2025
1502 points (99.3% liked)

Technology

66067 readers
5524 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[โ€“] [email protected] 86 points 2 days ago (7 children)

Cries in only Chrome and Edge at work ๐Ÿ˜ข

[โ€“] [email protected] 2 points 23 hours ago (1 children)

Edge extension store still has it I think. Use it until Edge removes it as well. Then tell the IT to use Firefox highlighting the importance of adblocking.

[โ€“] [email protected] 1 points 23 hours ago

I don't like my chances of swaying IT. The organisation is too big and I'll get told I should be using Edge which is the only officially supported browser.

[โ€“] [email protected] 80 points 2 days ago (2 children)
[โ€“] [email protected] 66 points 1 day ago (3 children)

Yeah. What company wouldn't allow it?

When I was working for an ad exchange, everyone had adblock installed in their browsers, I found that quite ironic.

[โ€“] [email protected] 61 points 1 day ago (2 children)

I would argue it's a security issue not to have any ad blocking. Many scams online start with popups or fake ads.

So if you get the opportunity to talk to IT that's what I would mention.

[โ€“] [email protected] 26 points 1 day ago (2 children)

A good IT is blocking ads at a company-level. Browser extensions wouldnโ€™t matter, and in fact, shouldnโ€™t be allowed for the same reason.

[โ€“] [email protected] 28 points 1 day ago (1 children)

You can only catch so much at the edge and DNS level. Browser extension catches the stragglers that get through. But we've mitigated virtually all browser induced malware possibilities by just moving to cloud-based internet isolation. It's similar to what the DoD uses, if anyone's familiar with their use case: https://www.bylight.com/wp-content/uploads/2020/09/CBII_2020-2025.pdf

[โ€“] [email protected] 11 points 1 day ago (1 children)

Even with CBII ads still make the internet cancerous to even look at

[โ€“] [email protected] 4 points 1 day ago

Oh for sure, but with CBII, malicious ads can't exploit a vulnerability and infect your local system.

[โ€“] [email protected] 2 points 1 day ago

I'm not always working in the office, and they've asked us to connect to VPN only if we need access to the internal network. Email and Teams work without VPN, but now you want me to log in for web access? A browser blocker is better imo.

[โ€“] [email protected] 6 points 1 day ago

The FBI agrees with you

(Although they have since taken down their PSA woth no explanation)

[โ€“] [email protected] 6 points 1 day ago

Yeah. What company wouldnโ€™t allow it?

My IT department uninstalled it from my work laptop, and told me not to reinstall it because - and I quote: "The only browser IT officially supports is Google Chrome."

What makes this doubly stupid is that I'm a web developer. I literally can't test my stuff on another browser...

[โ€“] [email protected] 5 points 1 day ago

I used to develop ads (non intrusive things for home depot or go RVing) and i used ad blockers. When testing, i would just run private browsing with plugins disabled...

[โ€“] [email protected] 33 points 1 day ago (3 children)

Officially only Edge is supported, but Chrome is tolerated. It's a full MS environment.

[โ€“] [email protected] 38 points 1 day ago* (last edited 1 day ago) (1 children)

Same here. The worst thing is in their justification of disallowing Firefox they listed that it was not an enterprise application. I get that it might be extra effort to support it but don't list something factually untrue as a lame cop out for why you don't want to.

[โ€“] [email protected] 29 points 1 day ago

Was told it wouldn't be allowed because you couldn't restrict it using GPO... Until I told them they could absolutely apply those restrictions using GPO and even provided the ADMX templates.

[โ€“] [email protected] 13 points 1 day ago (2 children)

Click on every single ad and banner, click "I agree" on every pop-up. Make that computer hate it's life!

[โ€“] [email protected] 4 points 1 day ago

How To Get Fired 101

[โ€“] [email protected] 7 points 1 day ago (1 children)

uBlock Origin Lite does work, but it's predefined lists only. You can't use the element zapper ๐Ÿ™

[โ€“] [email protected] 3 points 1 day ago

My condoleances

[โ€“] [email protected] 12 points 2 days ago (2 children)
[โ€“] [email protected] 39 points 2 days ago (3 children)

At large organizations you're generally not allowed to download much of anything without it passing through IT security and management first. If it's a no, it will probably stay a no.

[โ€“] [email protected] 1 points 4 hours ago

In your experience, what large organization restricts this? I've worked at a few SaaS companies and a FAANG that always gave us full install rights and browser choice. Granted we are on the software side, but I haven't experienced this at all.

[โ€“] [email protected] 12 points 1 day ago (1 children)

I work for a non-profit and they are way more lenient about what we would like to install as long as the job gets done.

[โ€“] [email protected] 5 points 1 day ago (1 children)

Then you have bad opsec and security holes.

This matters more for some industries than others. But this attitude lets a malicious employee install basically whatever they want in service of "the job" and you won't even know you're being breached until after it's all over.

[โ€“] [email protected] 2 points 1 day ago

Well, we still have to get approval. But it just seems like they don't mind as much. For example, I don't know how many companies out there would be fine with installations of AutoHotkey and LibreOffice.

[โ€“] [email protected] 4 points 1 day ago (1 children)

Just remember,it's easier to ask for forgiveness than permission!

[โ€“] [email protected] 6 points 1 day ago* (last edited 1 day ago) (1 children)

Just to be clear, I mean it's literally managed at the Group Policy level (in Windows server environments at least) and no amount of asking will suddenly give your user account permissions to be able to save files of any kind.

You generally literally cannot download it without going through IT to get them to approve of and give your account access first.

[โ€“] [email protected] 2 points 1 day ago

Ya I forgot I have escalated device privileges and an admin account, which I definitely would have used for installing anything. Although I believe I can also skirt the rules using winget on a user account. That will probably get you in trouble however!

[โ€“] [email protected] 2 points 1 day ago
[โ€“] [email protected] 7 points 2 days ago (3 children)

Download a Firefox based browser from the Microsoft store?

[โ€“] [email protected] 28 points 2 days ago

some "infosec" systems tags firefox as a "vulnerability" risk

ahem tenable ahem

[โ€“] [email protected] 11 points 2 days ago (1 children)
[โ€“] [email protected] 7 points 1 day ago

Wellp, time to get a new job.

[โ€“] [email protected] 6 points 1 day ago

I can't install anything. I'm lucky I can install uBlock Origin because I worked out later most extensions are disabled too. But I guess it's only matter of time until that disappears.

[โ€“] [email protected] 2 points 1 day ago* (last edited 1 day ago) (1 children)

If you had uBlock origin already, you may have gotten a message through Chrome that it was no longer supported, so it's been disabled, and gives you the option to remove it. I noticed you don't have to remove it, and it can be re-enabled. However, I need someone smarter with adblockers than I to say if this is actually helpful and not hazardous.

[โ€“] [email protected] 4 points 1 day ago* (last edited 1 day ago) (1 children)

People are saying manifest v2 (the old API that ublock uses) will be gone soon, which I think should effectively make ublock unusable whatever you do unless you stop updating chrome maybe (which could open you up to a ton of security issues) ? Not sure, don't care since I've ditched chrome long ago

[โ€“] [email protected] 2 points 1 day ago

Good to know, thanks.

[โ€“] [email protected] 2 points 1 day ago

I would have run already.