Newsletters

Select newsletters below and click the button to sign up!

Boston News NY News
DC News Internet Daily
SiliconValley News
InternetNews Business Report




Become a Marketplace Partner



Partner With Us















Internetnews Bloggers

Recent Entries

Archives

April 2009
Sun Mon Tue Wed Thu Fri Sat
      1 2 3 4
5 6 7 8 9 10 11
12 13 14 15 16 17 18
19 20 21 22 23 24 25
26 27 28 29 30    

Monthly Archives

Search The Blog

Netstat -vat by Sean Michael Kerner (bio)

A command line view of IT



Don't Run Mozilla Firefox in Hanoi !

sr-firefox3.jpgFrom the 'many eyes don't necessarily mean better security' files:

Open Source thrives on the idea that contributions help to grow development. Open Source thrives on the idea that many eyes looking at open code can provide better security than proprietary closed models.

Unfortunately on the security side, it's not always the case. Mozilla's Chief Security person Window Snyder has publicly admitted that Mozilla was inadvertently allowing a virus infected Vietnamese language pack for Firefox to be distributed. Snyder noted that the infected code could result in users seeing unwanted ads and could be used as a launching point for other malicious actions.

Mozilla is not aware of precisely how many users may be at risk,  though they do know that there have been 16,667 downloads of the language pack since November of 2007.

So how did this happen? Doesn't Mozilla do some kind of security scanning before they distribute code?  Snyder explains:
Mozilla does virus scans at upload time but the virus scanner did not catch this issue until several months after the upload.  We are also adding after-the-fact scans of everything to address this sort of case in the future.
IMHO, while it's NOT GOOD that this happened in the first place, it is good that Mozilla is being relatively open about this now and is taking the appropriate steps to make sure it doesn't happen again.

| Comments (1) | TrackBacks (0) | Share

0 TrackBacks

Listed below are links to blogs that reference this entry: Don't Run Mozilla Firefox in Hanoi !.

TrackBack URL for this entry: https://swarm.jupitermedia.com/mt-tb.cgi/3087

1 Comments

Amit said:

Mmm.. This is very interesting what you saying here.
Can you put more light on the subject.

I mean, the post is too interesting to be a short one ;)

Thanks
Amit

Leave a comment