Skip to content

A collection of security‑focused filter lists addressing edge‑case abuse vectors with minimal false positives.

License

Notifications You must be signed in to change notification settings

TantalusDrive/Secfilters

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

260 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

Security Filter Lists

Addressing niche but reproducible security abuse vectors often underrepresented in mainstream filter lists.

This repository hosts a small set of filter lists targeting specific security abuse vectors at the network and browser level.

They are not meant for general-purpose adblocking or privacy use. In practice, they focus on well-defined threats, prioritizing stability, minimal false positives, and avoiding site breakage.

Design principles

Security-first scope
We address only vectors with clear, reproducible security implications. Each rule is added deliberately to mitigate actual threats.

Conservative filtering
Rules are included only when demonstrably safe. We avoid speculative or aggressive filtering that could disrupt legitimate site functionality.

Low churn
Lists are designed to remain effective over time, requiring minimal maintenance. Updates occur only when security risks evolve or new edge cases are discovered.

Explicit exceptions
Major brands, governments, and institutions are deliberately allowlisted to prevent false positives or critical login issues.

Compatibility

  • Each adblocker (ABP, AdGuard, Brave Shields, uBlock Origin) should use their engine-specific variant.
  • Do not combine lists for different engines; subscribe only to the list matching your setup.

What this repository does not aim to do

  • Replace general-purpose adblocking or DNS filter lists.
  • Block generic analytics, advertising, or trackers.
  • Interfere with legitimate site functionality.
  • Apply speculative or aggressive filtering without clear security justification.

Available lists

IDN Homograph & Favicon Security List

This list is conceptually inspired by the work of DandelionSprout, while remaining independently curated, structured, and maintained.

Targets:

  • IDN / Punycode homograph attacks
    Prevents phishing and impersonation using visually confusable internationalized domain names.

  • Persistent favicon abuse
    Prevents security risks from favicon caching, such as spoofing, phishing, and malicious tracking vectors.

Subscription URLs

Raw GitHub URLs are available only as fallback.


Attribution & inspiration

Some lists are conceptually inspired by community work. No content is copied; all rules are independently curated, with distinct scope and maintenance philosophy.

License

CC BY-NC-SA 4.0
This repository and its contents are released under the Creative Commons Attribution-NonCommercial-ShareAlike 4.0 International (CC BY-NC-SA 4.0).

About

A collection of security‑focused filter lists addressing edge‑case abuse vectors with minimal false positives.

Topics

Resources

License

Contributing

Stars

Watchers

Forks

Sponsor this project

Packages

No packages published