How to write a rule to drop malicious packets?

Seems like AdblockPlus still might be able to deal with the HTML with a sufficient regex. Or maybe run a local proxy just to do that.

It would be worth asking on the pf mailing list. If the latest version of pf can't do it, they might consider adding it, or suggest a different way to accomplish the same thing. Note that FreeBSD's version of pf usually lags behind the newest version.
 
Back
Top