Bonum Certa Men Certa

Mozilla is GAFAM, HTTPS is Monopolies

posted by Roy Schestowitz on Oct 03, 2024,
updated Oct 03, 2024

SHATTERING popular and/or widespread illusions (read: falsehoods) is very important. That Mozilla is a bunch of rubbish became common knowledge in recent years, but what about the practices that Mozilla keeps promoting? Little of what Mozilla does is commendable these days.

Here is what I'm presented with today when attempting to access "Pine64’s Linux E-ink Tablet Is Coming Back":

Did Not Connect: Potential Security Issue

Firefox blocks it. No workaround, perhaps nothing short of tinkering with hidden options somewhere (not only complex; Mozilla added many barriers). Why does Mozilla do this? Who stands to benefit?

One week ago we wrote, "Mozilla's Concept of Web Security: Firefox Cannot Access Wikileaks Because of Clocks or Mindless Bytes" (at a critical time).

Firefox obstructs some very important sites. This isn't about privacy or security, it's all about centralisation. Mozilla is trying to empower GAFAM; it even outsourced itself to it (e.g. Microsoft's GitHub, which is proprietary).

It's a real pain in Firefox. But it works OK in Falkon (just press OK):

Pine64’s Linux E-ink Tablet Is Coming Back

Yesterday we spotted a good new post that's a rant about what HTTPS does to "small" sites (or user clients) such as LXer:

HTTPS as an accessibility issue

[...]

Two things have happened recently to shake this perception.

The first was the launch of my silly Ruben’s Retro Corner, which has taken on more of a life than I expected. Several of you have told me you use the site to test retrocomputers, which makes me incredibly happy. More surprising though were the number of people saying they use it as a way to test other machines in a range of different scenarios and use cases. It’s a relatively memorable address, and they know it’s one of the few remaining sites they know will be delivered over plain HTTP.

In the words of moral philosopher Curtis Stigers, it made me wonder why. Granted, I’ve written enough scripts to know that including the requisite libraries to handle HTTPS traffic is an extra step, but I didn’t think it was especially onerous.

It wasn’t until I wrote my post about the promise of HTML and CSS last month that I drew the obvious connection. Not every endpoint supports HTTPS. And we’re shutting them out.

[...]

But this is a pragmatic issue. Many endpoints are old and lack support for modern ciphers, or never had the feature to begin with. Implementing HTTPS everywhere introduces a limitation on the machines, operating systems, and therefore people who can view this. Terence Eden’s 2021 post about this topic is worth a read if you don’t think this is an issue.

This gets us back to the value proposition of HTTPS. Are they… really necessary for a blog without a web-facing admin portal, software downloads, or mission-critical features? Have I shut people out for benefits that don’t really make sense in this context? Have a lot of us?

It might be too late to reconsider reverting back to plain old HTTP for this blog, because I assume endpoints would see a former HTTPS site rendering as HTTP as a security risk. Redirects would also be tricky. But it’s making me re-evaluate my use of it elsewhere.

Ruben Schade nailed it, but there are additional issues associates with this HTTPS 'cargo cult'. We covered those other issues many times in the past.

HTTPS isn't evil, but there are caveats; HTTPS with outsourced and centralised CAs is an even bigger issue.

Shame on Mozilla for wanting to shut out anything but HTTPS and for playing along with this nonsense wherein whatever isn't "blessed" by Pentagon-friendly cabals of CAs must be stubbornly obstructed.

Firefox used to boast that it would make the Web more accessible. Today's Mozilla is rowing in the opposite direction. Today's Mozilla also destroys the planet by promoting "hey hi" (AI) nonsense instead of solving real issues.

Other Recent Techrights' Posts

How the European Union (EU) Fell Out of Love With Free/Libre Software
Lots of bribery
Certificate Authority Let's Encrypt Has Almost Gone Down to Zero, Nearly Totally Extinct in Geminispace, the Few Capsules Still Using It Are Spam/Dead/Stagnant
This represents another decrease for Let's Encrypt; the last decrease was last week
Trying to Silence Techrights Was a Huge Mistake
Peter Thiel attacked a publisher for asserting, correctly, that he was gay. Now everyone knows it.
 
Deep in Debt With the Magnitude of Losses Quickly Growing, Microsoft "Open" "Hey Hi" Now Uses Broadcom for Vapourware, Pretending It'll Do OK Next Year
At some stage it'll collapse
You Can Tell Microsoft is in Trouble When Its Own Fans and Staff Blast it
"Microsoft sinks billions into chasing artificial intelligence fads to hype up its share price."
Multiple Undersea Cable Cuts and We're Still OK
Microsoft customers experience problems
Lawyers Who Think They Are Online Assassins Don't Deserve a Licence to Operate
they've become a laughing stock in their "sector"
Microsoft Windows Fell to 3.9% "Market Share" in Bahamas
Based on statCounter
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Sunday, September 07, 2025
IRC logs for Sunday, September 07, 2025
Gemini Links 07/09/2025: Scanner, Slop, and Chadobear
Links for the day
The UEFI 9/11 is 3 Days Away
Nobody denies that bad things will happen
Google Versus Journalism
Google played a big role in the demise of news sites
Gemini Links 07/09/2025: Advertising, Decentralized Archival, and Outsourcing to Bezos
Links for the day
Not Much Left in News Cycles
To be very clear, this does not describe "Linux" anything; it's true in just about every facet of news, except the paid-for fake "journalism" about "hey hi" (sites getting paid explicitly to maintain or rekindle hype)
Throwing Away "Old" Computers (Mozilla and Other Climate Deniers)
Mozilla is not leftist
The UEFI 9/11 - Part VIII - Denial of Service and Selling Us WSL (Windows) Instead of "Risky" (Prone by Breakage by Microsoft) GNU/Linux
Restricted Boot (so-called 'SecureBoot') does not improve security. It is nothing but trouble. It's meant to trouble non-Windows users. In dual-boot setups, SecureBoot is a recipe for disaster because Microsoft keeps erasing or tampering with the boot sector, to paraphrase an associate
Slop is Extremely Rare in Geminispace, Slop Images Are Unheard Of (Despite Images Being Supported)
As long as Geminispace grows in terms of domains it's safe to predict the protocol will still be used in 2029 and hence Geminispace will turn 10
Links 07/09/2025: Robodebt Class Action, Fines, and Copyright Settlement
Links for the day
Links 07/09/2025: Yle Impersonated in Social Control Media, Boat-Attacking Orcas, Midjourney Sued Again
Links for the day
Slopwatch: LinuxSecurity, Linux Journal, and the Serial Slopper
Google won't tackle the issue because Google participates not only in relaying slop but also in generating lots of it
Links 07/09/2025: Google Fines in EU and "Your Internet Access Is at Risk"
Links for the day
Gemini Links 07/09/2025: Little Brother and Corporate Theatre
Links for the day
Links 07/09/2025: More Harms of Slop and Anthropic's Nightmare Scenario (Huge Legal Liabilities for Slop)
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Saturday, September 06, 2025
IRC logs for Saturday, September 06, 2025
Microsoft Sites Now Talking About September's Mass Layoffs at Microsoft
It's noteworthy that even Microsoft's MSN now covers the latest revelations about mass layoffs
Gemini Links 06/09/2025: SpellBinding Moving and "The Cloud" Ridiculed
Links for the day
Slopwatch: On "the Apology Industry", Chatbots (Punchbag for Customers), and Fake Articles About "Linux"
"news reporting priorities changed"
Links 06/09/2025: "Covid Incidence on the Rise" and Many Attacks on the Press Worldwide
Links for the day
The Register Bill
The Register MS - putting the "MS" in your centre of the universe
Analogies for "Memory Safety" in Rust
Don't worry, it's Rust! It can do anything!
Nobody Denies That SecureBoot Will Cause Problems After September 11
Not even Microsoft
Gemini Links 06/09/2025: Infinite Scrolling and Posting from Emacs
Links for the day
Links 06/09/2025: GitHub Meltdown Over Slop, "U.S. Jury Says Google Should Pay $425 Million in Privacy Lawsuit"
Links for the day
Despite Its Severe Financial Problems Gnome Foundation Inc Paid Rosanna Yuen Over 100,000 Dollars Last Year
maybe relocation should be considered
The "Left" and the Right"
It poisons everything
Mozilla and Rust Are Not Leftists
they're part of the mass consumerism machine
Disposable to Microsoft
There is an extensive set of people who got used by Microsoft, only to be thrown away a month later or a year later or a decade later
The UEFI 9/11 - Part VII - This Coming Week Many PCs Will Refuse to Boot "Linux" (Because of Microsoft's Expired Certificate)
The real solution is, disable "secure boot" or "SecureBoot" while it's still possible. [...] Just like submarine patents, a lot of this problem was "hibernating" for a while
The Thing Nobody in Red Hat Wants to Talk About Openly
There is a real sentiment or worry among Red Hatters, Europeans and Americans in particulars (because of higher salary expectations)
Slopwatch: Small Parade of Fake News About "Linux" and Scams Borrowing the Name (or Word) "Linux"
In practice, LLMs are a risk
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, September 05, 2025
IRC logs for Friday, September 05, 2025