Showing posts with label Browser. Show all posts
Showing posts with label Browser. Show all posts

Friday, April 15, 2011

Blocking Reported Attack Sites



Mozilla Firefox has the option to block reported attack sites and finally I've seen it in action.

Wednesday, December 8, 2010

Comparing Privacy & Security of Android 1.5 Free Browsers

The following browsers support Android 1.5 (Cupcake) & above and can run as desktop/PC mode. Only 2 browsers support private browsing for clearing cache & history on exit but not cookies. Even the free Mercury & Atomic Lite browsers on Apple iOS platform have the private browsing option to clear history & cookies on exit.

Browser
Dolphin 3.1.1
Skyfire
2.3.3.19663
Beta
xScope
5.34
Opera Mobile
10.1 Beta

Private Browsing
Cache
History
Cache
No
No
Privacy
Clear cache,
passwords,
history,
cookies,
form data &
location access
Clear cache,
passwords,
history,
cookies,
form data &
location access
Clear cache,
passwords,
history,
cookies &
form data
Clear cache,
passwords,
history,
cookies &
shared location
Disable
Javascript
Yes
Yes
No
No
Disable
Plug-ins
No
Yes
No
No
Disable
Cookies
Yes
Yes No Yes
Block
Pop-up Windows
Yes
Yes
No
No

Thursday, August 5, 2010

Adding Encrypted Google Search in Firefox Search Bar

You can add Google SSL beta search in Firefox search bar by using this add-on.

The downsides are McAfee SiteAdvisor will not work in the search results and search suggestions will not work when "Show search suggestions" option is activated.

Friday, July 23, 2010

Mozilla Firefox 3.5.11

The latest release fixed several security issues :

MFSA 2010-47 Cross-origin data leakage from script filename in error messages

MFSA 2010-46 Cross-domain data theft using CSS

MFSA 2010-45 Multiple location bar spoofing vulnerabilities

MFSA 2010-42 Cross-origin data disclosure via Web Workers and importScripts

MFSA 2010-41 Remote code execution using malformed PNG image

MFSA 2010-40 nsTreeSelection dangling pointer remote code execution vulnerability

MFSA 2010-39 nsCSSValue::Array index integer overflow

MFSA 2010-37 Plugin parameter EnsureCachedAttrParamArrays remote code execution vulnerability

MFSA 2010-36 Use-after-free error in NodeIterator

MFSA 2010-35 DOM attribute cloning remote code execution vulnerability

MFSA 2010-34 Miscellaneous memory safety hazards (rv:1.9.2.7/ 1.9.1.11)

Monday, July 5, 2010

Mozilla Firefox 3.5.10

The latest release fixed several security issues :

MFSA 2010-33 User tracking across sites using Math.random()

MFSA 2010-32 Content-Disposition: attachment ignored if Content-Type: multipart also present

MFSA 2010-31 focus() behavior can be used to inject or steal keystrokes

MFSA 2010-30 Integer Overflow in XSLT Node Sorting

MFSA 2010-29 Heap buffer overflow in nsGenericDOMDataNode::SetTextInternal

MFSA 2010-28 Freed object reuse across plugin instances

MFSA 2010-27 Use-after-free error in nsCycleCollector::MarkRoots()

MFSA 2010-26 Crashes with evidence of memory corruption (rv:1.9.2.4/ 1.9.1.10)

MFSA 2010-25 Re-use of freed object due to scope confusion

Wednesday, June 23, 2010

Adobe Flash Player 10.1.53.64

Adobe has released a security update to its flash player. This will fix vulnerabilities that could cause the application to crash and could potentially allow an attacker to take control of the affected system.

You can get the latest update from the Flash Player Download Center which will also install Adobe Download Manager. If you want to bypass Adobe Download Manager, you can manually download the following:

Wednesday, April 21, 2010

Java Runtime Environment (JRE) Version 6 Update 20

The latest version fixed several security vulnerabilities :

CVE-2010-0886 - Java Deployment Toolkit

CVE-2010-0887 - New Java Plug-in

Monday, April 5, 2010

Mozilla Firefox 3.5.9

The latest release fixed several security issues :

MFSA 2010-24 XMLDocument::load() doesn't check nsIContentPolicy

MFSA 2010-23 Image src redirect to mailto: URL opens email editor

MFSA 2010-22 Update NSS to support TLS renegotiation indication

MFSA 2010-20 Chrome privilege escalation via forced URL drag and drop

MFSA 2010-19 Dangling pointer vulnerability in nsPluginArray

MFSA 2010-18 Dangling pointer vulnerability in nsTreeContentView

MFSA 2010-17 Remote code execution with use-after-free in nsTreeSelection

MFSA 2010-16 Crashes with evidence of memory corruption (rv:1.9.2.2/ 1.9.1.9/ 1.9.0.19)