
User Controls
New User
Edit/View My Profile



News Search



News Centers
News Search



ANet Chats
The Lobby
Special Events Room
Developer's Lounge
XBox Chat



Windows 98/98 SE
Windows 2000
Windows Me
Windows "Whistler" XP
Windows CE
Internet Explorer 6
Internet Explorer 5



Registry Tips
Windows 95/98
Windows 2000
Internet Explorer 4
Internet Explorer 5
Windows NT Tips
Program Tips
Easter Eggs



Latest Reviews
Microsoft Windows XP Professional
Norton SystemWorks 2002

Intel Personal Audio Player
Microsoft Wireless IntelliMouse



Site News/Info
About This Site
ANet Forums
Contact Us
Default Home Page
Link To Us
Member Pages
Site Search



©1997/2004, Active Network. All
Rights Reserved.
Layout & Design by
Designer Dream. Content
written by the Active Network team. Please click
here for full terms of
use and restrictions or read our
Privacy Statement.
09:07 EST/14:07 GMT | News Source:
ComputerWorld |
Posted By: Jonathan Tigner |
Mozilla Corp. yesterday warned users about a worm that slipped into Firefox's Vietnamese language add-on and went undetected for months.
The malware-infected file has been pulled from Mozilla's servers.
"The Vietnamese language pack for Firefox 2 contains inserted code to load remote content," Window Snyder, Mozilla's chief security executive, confirmed in a post to the company's blog on Wednesday. "Everyone who downloaded the most recent Vietnamese language pack since Feb. 18, 2008, got an infected copy."
According to Snyder, the download count for the add-on since last November has been 16,667. "So we anticipate the impact on users to be limited," she said.
#1 By
23603 (
5/9/2008 10:22:52 AM
Glad I don't use FireFox...
That is and always will be the problem with open source software... you never exactly what you are downloading.
Long live IE8 (beta1 :-)
#3 By
2960 (
5/9/2008 10:50:56 AM
Old news. Was reported days ago.
#4 By
92283 (
5/9/2008 12:28:44 PM
"Snyder said that Mozilla would boost the number of times it scanned files for malware. "We are also adding after-the-fact scans of everything to address this sort of case in the future," she said.
Developers on Bugzilla, however, argued whether that was feasible. "Ideally, yes, except that we get new definitions on average every six hours or so and it takes over a week to virus-scan the entire FTP server," said Mozilla's Miller as he replied to a proposal to rescan after every signature update. "
They need to get a faster ftp server.
#5 By
15406 (
5/9/2008 1:02:26 PM
#1: That is and always will be the problem with open source software... you never exactly what you are downloading.
That's got to be about the silliest comment I've read on ActiveWin in a while. With closed source, you have no idea what you're getting. With open source, you have the option of viewing & compiling the code yourself instead of trusting the binaries provided.
#2: Good reply.
#6 By
92283 (
5/9/2008 1:22:21 PM
"With open source, you have the option of viewing & compiling the code yourself instead of trusting the binaries provided"
But clearly no one did.
#7 By
92283 (
5/9/2008 1:22:25 PM
This post was edited by NotParkerToo on Friday, May 09, 2008 at 13:22.
#8 By
23275 (
5/9/2008 2:05:28 PM
Clearly Moz/Ff is not the secure wunderkind it was held out to be, and this last business is but one example.
For my money, I would prefer to stick with "a plan" - that being executed under the SDL and manifest in the effective layered approach Microsoft has adopted.
Similarly, and with equal clarity, the Internet evolved and the companies serving it have evolved with it - threats matured and so now have the methods used to deal with them.
FOSS/OSS has one way and it has proven to be at least as porous as MS was pre 2004 - before the SDL and Trustworthy Computing Initiative first began to show some teeth. Four years later, Microsoft is exactly where they should be, leading from the front and setting a good example for all.
Now... Moz/FF get back with MS and enabled securable objects, the UIPI and bake them into FF as your own version of Protected MODE - it alongside UAC and ASLR in x64 Vista simply work!
And don't even get me started on the dated and overly simple read, write execute BS security in the *nix - it simply does not compare to the model found in Windows Vista - most especially x64
*Happy Mother's Day!*
#9 By
23603 (
5/9/2008 2:52:04 PM
2 years old article...come on.. You can do better then that.
Read my comment again blindy "you never exactly what you are downloading". I did not mentionned anything about viewing and recompiling.
#10 By
143 (
5/9/2008 4:26:15 PM
You think that's bad wait when apps start running in FF. It will be like the old days when ActiveX first came out.
#11 By
7797 (
5/9/2008 5:01:12 PM
@EQ23 I don't have to do better than that for the point i made!
#12 By
20505 (
5/9/2008 8:06:56 PM
Hey ya'll,
I'll give you one of my philosophies of life.
At some point you must trust someone, otherwise you end up like Howard Hughes.
So the question is... who do you really trust (the evening news? ms? your doctor? your mom?)?
#13 By
143 (
5/10/2008 2:18:12 PM
Give me your credit card number and we'll talk about trust. ;)
#25 By
1107599 (
2/28/2014 3:15:38 AM
ООО «Престиж» осуществляет вывоз мусора в любых объемах по низким ценам и в кратчайшие сроки.
Вывоз мусора в СПб производится различными машинами ,исходя из ваших потребностей.
Работаем за наличный и безналичный расчет.
Заключаем договора, с предоставлением полного комплекта документов на вывоз и утилизацию мусора на полигонах.
Предлагаем вывоз мусора :
Вывоз мусора после замены окон (от 500 руб с услугами грузчиков)
Наша компания всегда готова к взаимовыгодному сотрудничеству.
Рассмотрим ваши пожелания и предложения.
Мы любим свою работу и ценим каждого клиента!
по тел +7(921)921-741-54-58
Наш сайт <a href=http://www.zxcars.ru> http://www.zxcars.ru</a>