Security News

Google Search bug shows blank page in Firefox for Android
2024-01-09 14:48

Users of the Firefox browser for Android have been reporting that they are seeing a blank page when trying to load the main Google Search site. A report of the issue on GitHub confirms that the problem is reproducible on Firefox Mobile 121.0 for Android 13 and additional tests indicate the same behavior on Firfox Nightly 123 and all versions starting v65.

Video Encoding Library Leaves Chrome, Firefox and More Open to Zero-Day Attack
2023-09-29 19:12

Google and Mozilla have patched a zero-day exploit in Chrome and Firefox, respectively. The zero-day exploit could leave users open to a heap buffer overflow, through which attackers could inject malicious code.

Zero-Day Security Vulnerability Found in Chrome, Firefox and Other Browsers
2023-09-14 18:58

Zero-Day Security Vulnerability Found in Chrome, Firefox and Other Browsers Updates are now available to patch a Chrome vulnerability that would allow attackers to run malicious code. It's time to update Google Chrome, Mozilla's Firefox or Thunderbird, Microsoft Edge, the Brave browser or Tor Browser; web development news site StackDiary has reported a zero-day vulnerability in all six browsers that could allow threat actors to execute malicious code.

Mozilla Rushes to Patch WebP Critical Zero-Day Exploit in Firefox and Thunderbird
2023-09-13 01:50

Mozilla on Tuesday released security updates to resolve a critical zero-day vulnerability in Firefox and Thunderbird that has been actively exploited in the wild, a day after Google released a fix for the issue in its Chrome browser. The shortcoming, assigned the identifier CVE-2023-4863, is a heap buffer overflow flaw in the WebP image format that could result in arbitrary code execution when processing a specially crafted image.

Mozilla patches Firefox, Thunderbird against zero-day exploited in attacks
2023-09-12 21:32

Mozilla released emergency security updates today to fix a critical zero-day vulnerability exploited in the wild, impacting its Firefox web browser and Thunderbird email client. "Opening a malicious WebP image could lead to a heap buffer overflow in the content process. We are aware of this issue being exploited in other products in the wild," Mozilla said in an advisory published on Tuesday.

Chrome, Firefox and more caught with their WebP down, offer hasty patch-up
2023-09-12 15:00

Google has rushed out a fix for a vulnerability in its Chrome browser, noting that an exploit already exists in the wild. The search giant has followed Apple in hurriedly issuing an update in response to research from The Citizen Lab at The University of Toronto's Munk School.

Firefox fixes a flurry of flaws in the first of two releases this month
2023-08-01 19:28

The latest full new version of Firefox is out, marking the first of two "Monthly" upgrades you'll see this month. Firefox version upgrades happen every 28 days, rather than once a month, so whenever a release comes out early enough in the month, there will be a second upgrade squeezed in at the end.

Firefox 115 is out, says farewell to users of older Windows and Mac versions
2023-07-05 18:58

As a consequence, this is the last version of Firefox that users on those operating systems will receive. From next month, if you're stuck with computers that can only run older, unsupported versions of Windows and macOS, you'll automatically be switched over to the Firefox ESR version.

Firefox 114 is out: No 0-days, but one fascinating “teachable moment” bug
2023-06-07 19:59

Clickjacking, very simply put, is where an attacker lures you to a part of the screen that looks safe to click on, and tricks you into clicking your mouse or tapping your finger on the spot marked X. only to have your click sent to a component in the web page that you definitely wouldn't have clicked on if only you'd known where your click was really going. Serve up content as a lure, showing a button or something of that sort that you'd be likely to see and want to click on.

Mozilla stops Firefox fullscreen VPN ads after user outrage
2023-05-26 14:52

Firefox users have been complaining about very intrusive full-screen advertisements promoting Mozilla VPN displayed in the web browser when navigating an unrelated page. The ads popping in Firefox disable the web browser's functionality, denying users access to the interface and graying out everything in the background until they close them.