Mozilla fixed in 48 hours the exploit in Firefox 3.5 and 3.6
It only took 48 hours for the Mozilla Foundation released a security patch following the discovery of a flaw in its browser, which allowed a takeover of the attacked machine.
The flaw was exploited from the site of the Nobel Peace Price site, which itself had been mysteriously hacked.
Firefox was the only browser that is visibly affected by this attack (see above).
Today, the Foundation has released two patches, one for each version of Firefox (3.5 and 3.6) affected by the exploit.
Everything is back to normal.
Hats off to a reaction rate too fast?
Microsoft released “IE9 Platform Preview 6″
"IE9 plateform preview 6" is unfortunately not a new version of the browser but an update of the platform demonstrations, benchmarks and tests that accompany its development. Tools to "prepare your sites IE9" and therefore of interest to all web developers.
Firefox: an hacking extension poses problems
A Firefox extension, dubbed Firesheep, is in fact a usurper of cookies. It was downloaded 104,000 times in 24 hours between curious and ... malicious.
The extension allows anyone to retrieve identifiers (then use to connect) to the accounts of users connected via a Wi-Fi not secure a site that does not use secure HTTPS connections. Among them there are many popular sites including Facebook and Twitter
Firesheep was developed by Eric Butler to the attention of major players in the web, including social, on a latent lax in terms of secure identification.
And it worked. Too well, this developer independent American states on his blog that he does not expect that "Firesheep" arrived in the Top 10 most popular Google queries in the United States.
Butler explains that on a wifi network is not secure, cookies may not be encrypted and are easy to intercept. It is therefore easy to copy in their browser and impersonate someone else.
A method that automates the extension and makes it very easy.
If it does not directly have the password for the user, it nevertheless opens the door to a multitude of flight information, refer to conduct banking transactions.
This video explains the workings of this image feat:
A 12 years old hacker found a critical flaw in Firefox
In the series' value does not expect the number of years "after the young girl of 16 who is developing a site for the British government, this is the hacker of 12 years is a critical flaw in Firefox.
And pocketing $ 3,000 in the passage provided by the Mozilla Foundation for any contributor who help significantly to improve the security of its browser.
Alex Miller is a young boy from San Jose (Calif.) computer enthusiast. Passionate but not insensitive to the gains.
When Mozilla has decided to multiply by six the reward for the discovery of a significant vulnerability, the young prodigy has made up his mind to win the award.
His initial analysis led him to find some flaws, minor, insufficient to receive the jackpot.
Stubborn, Alex Miller continues his research for 10 days at an hour and a half per day, until he uncovers a flaw in the use of application memory.
Tracking down bugs is not easy. Very technical, it concerns only a small community of developers, says essentially Brandon Sterne, head of security at Mozilla, about Alex Miller.
An annoying boy ?
Source : Mercury News
Internet Explorer 9 faster than Safari 5?
They say that, sometimes, development teams are likely.
At the launch of Safari 5 (yesterday), Apple did not lose to emphasize that his browser was much faster than its main competitors, namely Chrome and Firefox.
No word, however, Internet Explorer, superbly ignored.
Microsoft responded today with a small video that there is no comparison with four path: Internet Explorer 9 is fast, very fast, very fast. So much faster than Safari 5 bear bad (or no) comparison.
While it is still a bit early to make a real opinion (EI 9 is still in its second preview release), it is clear, however, that Microsoft's browser will make up part of the hardware acceleration (using the GPU and not the CPU) for video and other multimedia content (including Flash).
Note that Safari 5 does not offer this type of technology (hence the test results from Microsoft).
In contrast to the JavaScript (subject not addressed in the video), Safari 5 should continue to hold its own in the game
Anyway, the message is clear. The next time Apple decides to denigrate its competitors, thank you for not forgetting Microsoft.
The video is on this page (requires Silverlight).
