|
Critical Flaw Found in Firefox (pg. 2)
|
View this Thread in Original format
| Swamper |
| quote: | Originally posted by Matt
lol, I have javascript turned off anyway lol |
Lots of things on the net won't work for you then. |
|
|
| Streamline |
Has anyone ever been affected by these "High Risk" security threats? I mostly just get
spyware/adware on my computer and thats about it. But seriously, if your on the internet without
a firewall/anti-virus tool, I suggest you get off while you can and save your computers life.
My norton firewall stops on average 5 high risk attacks per day, and who knows how many moderate to low. |
|
|
| joinT |
most of those high risk alerts are related to phishing attempts..
as long as you are smart enough not to click on a link to; paypal, ebay, your bank, etc. from some random email saying your password has expired, you are pretty safe.. |
|
|
| loca |
| quote: | Originally posted by joinT
yes, but keep in mind - patches for FF arrive very quickly, whereas patches for IE can take months!!
not only that, but how old is IE 6? been out since 2001. after 4 years they better not have many bugs left.. |
+1 :D I haven't had a single security problem with firefox since i've been using it anyways. IE on the other hand... :rolleyes: |
|
|
| bass drive |
| quote: | Originally posted by Swamper
Lots of things on the net won't work for you then. |
like what?
(I just switched it off) |
|
|
| DigiNut |
| quote: | Originally posted by Swamper
Lots of things on the net won't work for you then. |
I seem to get along okay.
Virtually all of Firefox's issues are with JavaScript (and many of IE's are too - I'm not taking sides here). These "flaws" mean nothing - people need to understand that from a security standpoint, the whole concept behind JavaScript/VBScript and other scripting languages is utterly stupid. It can't EVER be secured because in order to be usable, it has to break some of the most fundamental security concepts.
What is client-side web scripting? It's running arbitrary code from a web site! That can never, EVER be secure. And the only way to even *partially* secure it is to get rid of the "default permit" - that is:
A) Only allow script code to be run from trusted web sites;
B) Don't ever allow inline scripts in HTML files because that enables self-modifying code;
C) Require a name and generate a checksum for every script on those sites, and don't allow code which has been modified to run until it has been re-verified;
D) Maintain a "safe list" of specific code constructs, and block anything else (for example, few if any people would allow the "eval" function)
And these "research" groups are a joke.
Marcus Ranum's rant on the security researchers
|
|
|
| Cosmic Fur |
| quote: | Originally posted by joinT
most of those high risk alerts are related to phishing attempts..
as long as you are smart enough not to click on a link to; paypal, ebay, your bank, etc. from some random email saying your password has expired, you are pretty safe.. |
Agreed. There's security and then there's stupidity. And no amount of security can protect you from being an idiot. Think a little before going to a site, and you'll be fine 99% of the time.
I pick Firefox over IE cause it's much more customizable and has tons more features. I'm not worried about security at all because I got anti-spyware, anti-virus, and firewall going at all times, and most importantly, I don't click on banners saying "Your paypal account is set to receive 10000 dollars! CLICKA HEAR TO CORFIRM, YO!"
Also agree with DigiNut on this one. Everything he said is 100% true. |
|
|
| rabbitjoker |
I love all the "yeah, but"'s... LOL! :clown:
Bottom line - within the last 6 months Firefox has 550% more security problems than IE.
wait. wait for it. wait.
"Yeah, but..." |
|
|
| DigiNut |
| quote: | Originally posted by rabbitjoker
Bottom line - within the last 6 months Firefox has 550% more security problems than IE.
|
Figures don't lie, but liars can figure. Do you think that statistic just *might* have something to do with the fact that Firefox is open source?
The bugs in Firefox are being discovered all at once, which is because the "security researchers" (see above post) just started looking. It's a good thing that they're being flushed out so quickly, it means there's less likelihood of exploits which *we* don't know about but the ]-[@x0|2z do.
You don't seriously think that this trend is going to keep up, do you? It's no different from any other open source projects - the first year after the official releases are rough, but afterwards they level off and are pretty much rock solid. |
|
|
| tw1tch |
| quote: | Originally posted by rabbitjoker
I love all the "yeah, but"'s... LOL! :clown:
Bottom line - within the last 6 months Firefox has 550% more security problems than IE.
wait. wait for it. wait.
"Yeah, but..." |
Picking a time line that best suits your argument. :) How about looking at total security flaws between IE 6.0 and Firefox 1.0. I believe Firefox wins hands down. |
|
|
| VERTiG0 |
| quote: | Originally posted by tw1tch
Picking a time line that best suits your argument. :) How about looking at total security flaws between IE 6.0 and Firefox 1.0. I believe Firefox wins hands down. |
Al Capowned
I like Firefox because it's faster and tabbed browsing rocks my socks, but I'd have no trouble using IE because I'm not a typical tard who clicks stupid and fills my box up with spyware and whatnot. |
|
|
| rabbitjoker |
| quote: | Originally posted by DigiNut
this trend |
Now that you mention trends...
IE is showing a negative trend towards security flaws.
Firefox is showing a positive trend towards security flaws. |
|
|
|
|