The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Firefox security
Time: 11:52 EST/16:52 GMT | News Source: *Linked Within Post* | Posted By: John Quigley

What would happen if Mozilla's Firefox suddenly became the browser that everyone was running? What would happen if it was as big a target for hackers and for virus and spyware authors as Internet Explorer is now. How would Firefox's reputation for security hold up? One has to wonder how secure a default Firefox installation is, and if there are things that can be done to make a Firefox deployment more secure?

Write Comment
Return to News

  Displaying 1 through 25 of 325
Last | Next
  The time now is 10:33:34 AM ET.
Any comment problems? E-mail us
#1 By 37 (67.37.29.142) at 1/12/2006 12:45:16 PM
"Firefox security"

Now THAT is an oxymoron.

#2 By 29664 (38.116.145.116) at 1/12/2006 1:08:12 PM
HA! Yeah I won't be going back to IE any time soon!!!!

#3 By 37 (67.37.29.142) at 1/12/2006 1:12:03 PM
We won't feel any less about you.

#4 By 15406 (216.191.227.68) at 1/12/2006 1:39:42 PM
The whole big target argument is a fallacy. If the app is more or less secure, then there still won't be as many exploits no matter how many people are plugging at it. However, if it's swiss cheese, then being the big target will result in many exploits that seemingly never end a la IE.

#5 By 2231 (71.126.176.80) at 1/12/2006 2:45:23 PM
The MS decision to integrate IE into Windows whilst the default user is running as admin will and should go down as one of computing history's greatest blunders.

This post was edited by schwit on Thursday, January 12, 2006 at 14:46.

#6 By 15406 (216.191.227.68) at 1/12/2006 3:37:26 PM
#6: It was only a blunder as far as MS' users were concerned. As I recall, MS did that to counter the DoJ's antitrust claims where they wanted MS to remove the browser from Windows. MS could then say that it was impossible to do so as it was too integrated to just rip it out. Turns out that was a lie, but that was the story they stuck to.

#7 By 8556 (12.217.111.92) at 1/12/2006 3:45:56 PM
schwit: After we are all gone, history is also likely to point out the IE was integrated into Windows because Bill Gates said that was what he wanted. The reason for the Gates decision was mainly because MS wanted to kill off Netscape, which it did. Steve Ballmer (Bill Gates's very own "Dick Cheney") likely forced things that way as he is notorious for not just wanting to make a profit, the primary goal of business, but to smother the competition until they no longer exist.

http://news.com.com/Court+docs+Ballmer+vowed+to+kill+Google/2100-1014_3-5846243.html

#8 By 32132 (142.32.208.231) at 1/12/2006 4:13:10 PM
"The MS decision to integrate IE into Windows whilst the default user is running as admin will and should go down as one of computing history's greatest blunders."

If that were true, then the vast numbers of Netscape, Mozilla, Firebird, Firefox security issues would be less than the number for IE.

But that isn't true. There is no evidence a non-integrated browser is more secure.

The evidence, for those without their heads up their *ss, is that adding features to a browser makes it less secure.

Remember, this list is only for 2005: http://www.mozilla.org/projects/security/known-vulnerabilities.html.

IE 6 only had 17 in 2005 according to Secunia.


#9 By 20505 (216.102.144.11) at 1/12/2006 8:12:45 PM
gentlemen, face it, the problem with software security is that the security is as much a problem with the user as it is with the author of a piece of software. if all computer users were as savvy the users of this august forum then security would be a minor problem.

as it stands i believe the future of software security is the same as with the manufactures of ladders. slap dozens of warning stickers on the product to try to prevent the average idiot from killing himself using it in an unsafe fashion.

firefox basically benefits from the fact that it is still largely used by the intelligencia of the computer world and not by my granny.

ie and ms software in general, as the peoples software, must be bullet proof to try to prevent granny from giving away her life’s saving to a pay pal scam.

no amount of security can make any device idiot proof.

#10 By 32132 (64.180.219.241) at 1/12/2006 11:56:41 PM
#10 "Darn, too bad this would be a valid point except that the number of security issues and the severity of them are barely related at all!"

Barely related?

Do you look at the list of Firefox vulnerabilities?

Mozilla admits to more CRITICAL vulnerabilities in 2005 than total IE 6 vulnerabilites in 2005.

Grow up. You are embarassing yourself.

#11 By 23275 (68.17.42.38) at 1/13/2006 12:28:09 AM
Gawd....please just shoot me....

The Windows interface runs in Kernel Mode.

IE is part of that interface - read sentence one above, again.

The above neither increased, or decreased security opposite Windows, or IE.

Facing any system, by any means, to any public network, like the Internet, will expose any flaw to discovery and probable exploitation. The frequency of that discovery and exploitation will exhibit an increase in incidence of coincidence in direct proportion to the number of absolute systems deployed relative to the number of systems exposed to the public networks. In the case of Windows, and IE, where both the absolute frequency and relative frequency are significantly higher than any other similarly disposed computing systems,
the actual number of discovered flaws and known exploits is astonishingly low.

Conversely, and by direct relative comparison, the absolute frequency, and relative frequency
of discovered and exploited flaws for non-Windows systems is alarmingly high.

Similarly consistent comparisons opposite the human and material benefits opposite Windows, relative to the losses associated with its exposure, remain equally and measurably significant - rendering any associated loss materially insignificant.

Conversely, the reverse may be measured against non-Windows systems.

As Windows and IE's exposure to the public networks increased, an architectural flaw in the common elements which provided for remote code execution - specifically, COM, its clients, and servers, as developed and marketed as a platform connecting systems and processes - often remote from one another, manifest as ActiveX, were revealed as, a) the context in which remote code was executed, and b) unattended handling of unsigned and potentially malicious client controls in that context - most often a user with administrative rights to the local host.

The architectural flaw has been addressed and corrected - coincident to increases in absolute frequency, and incidence of coincidence. This is a natural process and one that may be entirely predicted - against any process - regardless of platform, manufacturer, or incident factors. Maturation comes to mind, but that too, is entirely predictable. Greed, or even legitimate and lawful efforts to generate profit have little influence on such processes.

At least Parker is entertaining...

#12 By 37 (67.37.29.142) at 1/13/2006 7:01:30 AM
"Firefox security"

Now THAT is an oxymoron.

#13 By 32132 (64.180.219.241) at 1/13/2006 11:09:07 PM
I looked the logs of one of my webservers for 3 days this week at random.

I counted the number of references to Firefox/ and the number of references to Firefox/1.5

The following is the logname: then the number of Firefox 1.5 hits, then the number of Firefox hits in the same log file.

EXTEND570.LOG: 82 / 305
EXTEND571.LOG: 361 / 1555
EXTEND572.LOG: 445 / 1701
EXTEND573.LOG: 84 / 270
EXTEND574.LOG: 71 / 323
EXTEND575.LOG: 85 / 441
EXTEND576.LOG: 81 / 451
EXTEND577.LOG: 457 / 1684
EXTEND578.LOG: 120 / 511
EXTEND579.LOG: 89 / 165

About 20-25% of Firefox users are "safe" - up to date. The rest were conned into thinking Firefox was safe without upgrading.

Only a small portion of Firefox users know how to download the daily builds. The average user is running an unprotected version of Firefox.

Just because a patch exists doesn't mean it is downloaded and installed.


Quit embarassing yourself.


#14 By 32132 (64.180.219.241) at 1/14/2006 10:39:37 AM
"Perhaps you are displeased with the updating system?"

Not personnally since I don't use Firefox.

But since I see Firefox .9x users in my webserver logs, I must assume the people using those versions are disappointed with the crappy patching mechanism in those versions.

You can keep citing Secunia to me, but the reality is, every version of Firefox has been compromised. And most users are using a compromised version of Firefox.

And you can claim that the tiny percentage of 1.5 users are safe from the hundreds of exploits affecting earlier versions of Firefox ... but the users of .91 said the same thing at the time, as did the users of 1.0 and 1.01 etc etc.

The Firefox evangelists lied and said Firefox was secure. It isn't.

#15 By 37 (68.190.87.184) at 1/15/2006 2:12:39 PM
"The reason why Firefox has 65 vulnerabilities in 2005 versus IE's supposed 6 vulnerabilities, is because Firefox ADMITS that there are vulnerabilities, while Microsoft DOESNT ADMIT that there are vulnerabilites. "

OPINION noted.

#16 By 4240821 (213.139.195.162) at 10/26/2023 5:36:51 PM
https://sexonly.top/get/b707/b707qvahaymvnzlnakm.php
https://sexonly.top/get/b804/b804kdigclwquvcqfrw.php
https://sexonly.top/get/b816/b816ehhjpydvqaxtsyk.php
https://sexonly.top/get/b368/b368yaxqstpciyxftgv.php
https://sexonly.top/get/b813/b813sjreyrljjwgqyvs.php
https://sexonly.top/get/b442/b442tycrtxyuekicisy.php
https://sexonly.top/get/b981/b981ffczyotrkikbscg.php
https://sexonly.top/get/b496/b496bhdqbqjdddhfxux.php
https://sexonly.top/get/b678/b678oaufacszdecxvky.php
https://sexonly.top/get/b527/b527kbadxaeosyvcznq.php
https://sexonly.top/get/b100/b100yyqiswyujqyktyz.php
https://sexonly.top/get/b246/b246rqmzsivxbavmnmt.php
https://sexonly.top/get/b163/b163mqkasikndvnjpem.php
https://sexonly.top/get/b648/b648xbkpjqxeuimjgcm.php
https://sexonly.top/get/b511/b511ebfhvimqvimmnvz.php
https://sexonly.top/get/b299/b299xsrwolyxdyfjnzk.php
https://sexonly.top/get/b142/b142wjrvefqzdqyazzw.php
https://sexonly.top/get/b485/b485cflqjnqjsqdoukf.php
https://sexonly.top/get/b984/b984qiyjsnsbgqxirsk.php
https://sexonly.top/get/b220/b220rqrmhubbdkkeori.php
https://sexonly.top/get/b153/b153ffvbvnisscqplqx.php
https://sexonly.top/get/b293/b293fxqzluzzpqtpicq.php
https://sexonly.top/get/b371/b371fyglhytbkyluqnn.php
https://sexonly.top/get/b900/b900kfafnogjzivnuhh.php
https://sexonly.top/get/b803/b803njhiqipuydxlfhj.php
https://sexonly.top/get/b562/b562seszlvfapiaihxn.php
https://sexonly.top/get/b444/b444klomvcrbrzyvyxf.php
https://sexonly.top/get/b616/b616gzowskktndbzorr.php
https://sexonly.top/get/b729/b729uxrzqydtsdtqbfh.php
https://sexonly.top/get/b705/b705cyvxgzkvxthkbmx.php
https://sexonly.top/get/b995/b995fmmzcmrjeiqykhy.php
https://sexonly.top/get/b396/b396elecqxvdpimpbov.php
https://sexonly.top/get/b907/b907nhbskbghjxvloxh.php
https://sexonly.top/get/b876/b876nrrstmgiljesjja.php
https://sexonly.top/get/b287/b287pgevortkcruqyxu.php
https://sexonly.top/get/b124/b124bzfeqlmbugetwrr.php
https://sexonly.top/get/b18/b18oulkwttryuyijgc.php
https://sexonly.top/get/b517/b517qwusekdeykoxanp.php
https://sexonly.top/get/b871/b871xbzlrtbxrdijjqh.php
https://sexonly.top/get/b140/b140pjbnypwhhptikts.php
https://sexonly.top/get/b205/b205erqykjqrejxsryu.php
https://sexonly.top/get/b750/b750lsznxihfunuvbvi.php
https://sexonly.top/get/b897/b897dyzueiwedtbyajm.php
https://sexonly.top/get/b153/b153lnkbximxmnhvqpd.php
https://sexonly.top/get/b766/b766bbksjtmgmdbagok.php
https://sexonly.top/get/b157/b157ckrqryfutgkayaa.php
https://sexonly.top/get/b548/b548eeyulraocratwuv.php
https://sexonly.top/get/b553/b553mainzjpfecqpayc.php
https://sexonly.top/get/b714/b714xerzanrptrkjnot.php
https://sexonly.top/get/b532/b532cdpbqbttzvfxzki.php

#17 By 4240821 (103.151.103.150) at 10/30/2023 1:07:29 PM
https://www.quora.com/profile/KeishaMartin946/xtilia29-Mistress-Luck-HoneyExotic-Lovely_Mimi-SEXTKAP-FernandasFeet888-laura-bozzo-1-Cassia-Ultra-Emili
https://www.quora.com/profile/AlannaGomez1/therealthickup-Lunadelight-Qualivefeet-Actuallybunni-Zoe_loves_to_cum-mskimi-MaSa_Couple-themistressbrie
https://www.quora.com/profile/JohnJeppi252/HarleyQute-No07names-Chubbyprincess222-victoria-villarim-Lyla_Bliss-Bebe-Minou-yomysmilkers-TsunTsenpai
https://www.quora.com/profile/PaulHang705/Cocoa-Richiee-SingingSirenSeductre-catch-my-vibe-HunterJane-NicoleBashxo-Sashaquinn-xxx-FantasyHentai-Mont
https://www.quora.com/profile/MackenzieSmith744/Cherise-Taylor-laceymayyy-Lilfrisk-GoddesSamariel-BellandZeke-Stacy-Lusted-luanna_green-Brittany-Blue-Al
https://www.quora.com/profile/DavidAlgya763/thelewdnoodle-Alice-In-Wonderland-mandestroyer_-Englishman1991-InkyQueen-luz_norali-Riyahousewifeslut-Adda
https://www.quora.com/profile/NatalieGonzalez854/AvaReneeLuv-bloosnoot-GoddessLailana-Zarita_Exotic-AngelBabyyy27-lee-ann-gcgfindom-ColoringGirls-Summer
https://www.quora.com/profile/JohnJackson202/Clementeeny-gabi_paques-Tatyanna808-PrincessMolli3-ToriWoflexxx-lexilex769-NaturalTight-Tessa-Taylor-Har
https://www.quora.com/profile/JeffRevlon72/AtaliahPussey-DeeThaBrat-bl536-DoubleDMnM-Mz_Meow-HippieHeatherxxx-juicypaid-shelbyhardt11-Becky-Clearid
https://www.quora.com/profile/TammyAllen367/Paymybills-BabyGhoul666-Dcakes94-Darkvelvetcake-phoenix_taylor-Yyesim-CherryKitsune-Phoenixchelsea-Demon

#18 By 4240821 (103.152.17.80) at 10/31/2023 5:38:50 AM
https://app.socie.com.br/NikkiLovelyYoungone1234506
https://app.socie.com.br/read-blog/97141
https://app.socie.com.br/read-blog/97169
https://app.socie.com.br/read-blog/98109
https://app.socie.com.br/read-blog/97666
https://app.socie.com.br/Reyna515RabbitIsABitch
https://app.socie.com.br/read-blog/97475
https://app.socie.com.br/Baedriennepretub
https://app.socie.com.br/tabithapoisonAnalSlave4BigDick
https://app.socie.com.br/read-blog/97525

#19 By 4240821 (103.151.103.150) at 10/31/2023 7:53:01 PM
https://app.socie.com.br/3vieWinterzsweet_joni
https://app.socie.com.br/read-blog/97170
https://app.socie.com.br/Pixelkitt3nbrookebliss
https://app.socie.com.br/read-blog/97333
https://app.socie.com.br/vampamineEmpressKamryn
https://app.socie.com.br/read-blog/98315
https://app.socie.com.br/arikafoxxSensitive_girl
https://app.socie.com.br/LotusLazulistickyfingr
https://app.socie.com.br/read-blog/97204
https://app.socie.com.br/read-blog/97497

#20 By 4240821 (62.76.146.75) at 11/1/2023 5:23:15 PM
http://activewin.com/mac/comments.asp?ThreadIndex=13790&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=2635&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=85641&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=20327&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=53999&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=35662&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=84477&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=15155&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=22383&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=82870&Group=Last

#21 By 4240821 (109.94.218.82) at 11/2/2023 8:49:09 PM
http://activewin.com/mac/comments.asp?ThreadIndex=84944&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=65481&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=56956&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=57827&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=10481&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=38770&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=8544&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=81660&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=85247&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=56607&Group=Last

#22 By 4240821 (212.193.138.10) at 11/3/2023 10:36:36 AM
http://activewin.com/mac/comments.asp?ThreadIndex=77686&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=59549&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=26710&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=18117&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=36768&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=63409&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=8770&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=60946&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=76287&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=70662&Group=Last

#23 By 4240821 (109.94.216.41) at 11/4/2023 8:34:40 PM
https://hotslutss.bdsmlr.com/post/651475939
https://hotslutss.bdsmlr.com/post/657241207
https://hotslutss.bdsmlr.com/post/652497464
https://hotslutss.bdsmlr.com/post/660939929
https://hotslutss.bdsmlr.com/post/656246298
https://hotslutss.bdsmlr.com/post/653770299
https://hotslutss.bdsmlr.com/post/656421594
https://hotslutss.bdsmlr.com/post/655322572
https://hotslutss.bdsmlr.com/post/657465944
https://hotslutss.bdsmlr.com/post/657270427

#24 By 4240821 (92.119.163.194) at 11/5/2023 3:28:31 PM
https://printable-calendar.mn.co/members/19910096
https://printable-calendar.mn.co/members/19912780
https://printable-calendar.mn.co/members/19892290
https://printable-calendar.mn.co/members/19913433
https://printable-calendar.mn.co/members/19912840
https://printable-calendar.mn.co/members/19898716
https://printable-calendar.mn.co/members/19903794
https://printable-calendar.mn.co/members/19914510
https://printable-calendar.mn.co/members/19893616
https://printable-calendar.mn.co/members/19895496

#25 By 4240821 (62.76.146.75) at 11/8/2023 9:23:35 AM
https://www.hackerearth.com/@darathemu1984
https://www.hackerearth.com/@svaderomog1979
https://www.hackerearth.com/@darathemu1984
https://www.hackerearth.com/@sporlietensken1983
https://www.hackerearth.com/@clarobmarmo1988
https://www.hackerearth.com/@vastopenligh1983
https://www.hackerearth.com/@tromerorni1981
https://www.hackerearth.com/@coablinlittre1980
https://www.hackerearth.com/@ersengaka1987
https://www.hackerearth.com/@hirfindbingpa1971

Write Comment
Return to News
  Displaying 1 through 25 of 325
Last | Next
  The time now is 10:33:34 AM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *