Firefox Is Not As Safe As You Think

Firefox is widely regarded as a very secure web browser but even Firefox has some security issues. One of those is the ease with which a third-party application can sneak potentially malicious extensions into a user’s profile. See the demo at the end of this post that shows just how easy it can be. All an application has to do is to inject a few bits into the Firefox extensions. Normally Firefox checks to see if any extensions have been added from one launch to the next and users are shown an alert if a previously unknown extension is found. The injection neutralizes that check. By flipping the correct values, Firefox can be tricked into thinking that the extension has already been given the authorized by a user. It’s also possible to append malicious code to an existing extension instead of adding a new one. That would keep the malware from showing up in the Add-ons Manager.

Demo  

About these ads

About b4blogger
I am a student and a blogger who wants to share my knowledge with the world.

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Connecting to %s

Follow

Get every new post delivered to your Inbox.

%d bloggers like this: