×
Mozilla

Finfisher Spyware Use By Governments Expanding, Masquerades as Firefox 108

nk497 writes "Mozilla has sent a cease-and-desist order to Gamma International, after it was revealed the controversial creator of spyware for governments was disguising itself as Firefox on PCs. 'We cannot abide a software company using our name to disguise online surveillance tools that can be — and in several cases actually have been — used by Gamma's customers to violate citizens' human rights and online privacy,' Mozilla said." DavidGilbert99 writes on the wider implications of the Citizen Lab report: "Governmental spying software has been in the news a lot in recent months and today Citizen Lab has revealed its latest findings, showing that one of the most prolific tools in use, Finfisher, is now in use in 36 countries around the world [beware the auto playing video ads with sound]." And, Voulnet adds "According to analysis and report by CitizenLab of the Gamma FinFisher trojan spyware used against dissidents in the middle east and around the world, the FinFisher codebase uses the LGPL GNU Multiple Precision Arithmetic Library, possibly without adhering to its distribution restrictions."
Mozilla

Mozilla Is Considering Revoking TeliaSonera Trust For Sales To Dictators 123

ndogg writes "Mozilla is considering pulling TeliaSonera from its list of root certificate SSL providers. They have asked for comments on this on their mailing list. They're concerned about the use of the certificates by those governments for spying on its citizens, particularly in Azerbaijan, Kazakhstan, Georgia, Uzbekistan and Tajikistan — where TeliaSonera operates subsidiaries or is heavily invested. Mozilla's concern is that TeliaSonera has possibly issued certificates that allow hardline government servers to masquerade as legitimate websites — so-called man-in-the-middle attacks — and decrypt web traffic. This alleged activity would contradict Mozilla's policy against 'knowingly issuing certificates without the knowledge of the entities whose information is referenced in the certificates.'"
Firefox

Browser Choice May Affect Your Job Prospects 374

krygny sends this quote from The Economist: "The internet browser you are using to read this blog post could help a potential employer decide whether or not you would do well at a job. How might your choice of browser affect your job prospects? When choosing among job applicants, employers may be swayed by a range of factors, knowingly and unknowingly. ... Evolv, a company that monitors recruitment and workplace data, has suggested that there are better ways to identify the right candidate for job. ... Among other things, its analysis found that those applicants who have bothered to install new web browsers on their computers (such as Mozilla's Firefox or Google's Chrome) perform better and stay in their posts for 15% longer, on average."
Mozilla

Mozilla: Unlike FB and Twitter Single Sign-in, Persona Protects User Privacy 81

tsamsoniw writes "Mozilla today unveiled Persona Beta 2, the newest edition of the organization's open authentication system. The release includes Identity Bridging, which lets user sign in to Persona-supported sites using their existing webmail accounts, starting with Yahoo. Mozilla used the release as an opportunity to bash social sign-in offerings from Facebook and Twitter, which 'conflate the act of signing into a website with sharing access to your social network, and often granting the site permission to publish on your behalf,' said Lloyd Hilaiel, technical lead for Mozilla Persona. He added that they are built in such a way that social providers have full visibility into a user's browsing behavior."
Firefox

Gecko May Drop the Blink Tag 138

AmiMoJo writes "It looks like Mozilla are finally going to remove the much hated blink tag from the Gecko rendering engine that powers Firefox. Work to remove support for the tag, which was always non-standard and is not supported by the most popular HTML layout engines WebKit and Blink (Chrome, Safari, Opera, Android), is progressing and should show up in a future version of the browser." A comment attached to the discussion of this (not completed) move points out the odd possibility that Google's new Blink rendering engine may feature the blink tag via CSS animation, which would be "hilarious/awesome."
Mozilla

Mozilla Introduces Experimental Open Payment System For Firefox OS 68

hypnosec writes "Mozilla has developed an open payment service API to support app purchases in Firefox OS, and has released a draft version allowing app developers to process payments. Pointing out the drawbacks of the different models for payments on the web that are currently available, Mozilla has revealed that it is looking to introduce a common web API that would make payments through web devices easier and more secure while being flexible and retaining today's checkout button features that are available for merchants. Partly based on Google Wallet, Mozilla's WebPayment API will remain open to ensure that it is used by a wide range of payment service providers. As a first step towards this, Mozilla has introduced the navigator.mozPay function, allowing web apps to accept payments."
Mozilla

Mozilla and Samsung Collaborating to Bring New Browser Engine to Android 111

An anonymous reader writes with this bit from The Next Web: "Mozilla and Samsung on Wednesday announced a new partnership to build a 'next generation' web browser engine called Servo. The ultimate goal is to bring the technology to Android and ARM, though the two companies have not shared a timeframe for a possible launch. With the help of Samsung, Mozilla is bringing both the Rust programming language as well as Servo to Android and ARM. Samsung's contribution so far has been an ARM backend to Rust as well as the build infrastructure necessary to cross-compile to Android. In fact, the code is available now on GitHub, as is the source for Rust and Servo." For those unfamiliar, Rust is Mozilla's new safe systems programming language (kind of like BitC), and Servo is their general project to write a brand new engine using Rust. Rust has an interesting memory model that eliminates much difficulty in reasoning about threaded programs. If you know what you're doing, they claim you can cross compile the code for Android, but no functionality guarantees have been made.
Firefox

Firefox 20 Arrives With Per-Window Private Browsing, New Download Manager 181

An anonymous reader writes "Mozilla on Tuesday officially launched Firefox 20 for Windows, Mac, Linux, and Android. The improvements include per-window private browsing, a new download manager in the Firefox toolbar, and the ability to close hanging plugins without the browser hanging. The new desktop version was available as of yesterday on the organization's FTP servers, but that was just the initial release of the installers. Firefox 20 has now officially been made available over on Firefox.com and all users of old Firefox versions should be able to upgrade to it automatically. As always, the Android version is trickling out slowly on the official Google Play Store. The changelogs are here: desktop and Android."
Firefox

Emscripten and New Javascript Engine Bring Unreal Engine To Firefox 124

MojoKid writes "There's no doubt that gaming on the Web has improved dramatically in recent years, but Mozilla believes it has developed new technology that will deliver a big leap in what browser-based gaming can become. The company developed a highly-optimized version of Javascript that's designed to 'supercharge' a game's code to deliver near-native performance. And now that innovation has enabled Mozilla to bring Epic's Unreal Engine 3 to the browser. As a sort of proof of concept, Mozilla debuted this BananaBread game demo that was built using WebGL, Emscripten, and the new JavaScript version called 'asm.js.' Mozilla says that it's working with the likes of EA, Disney, and ZeptoLab to optimize games for the mobile Web, as well." Emscripten was previously used to port Doom to the browser.
Firefox

Testers Say IE 11 Can Impersonate Firefox Via User Agent String 252

Billly Gates writes "With the new leaked videos and screenshots of Windows Blue released, IE 11 is also included. IE 10 just came out weeks ago for Windows 7 users and Microsoft is more determined than ever to prevent IE from becoming irrelevant as Firefox and Chrome scream past it by also including a faster release schedule. A few beta testers reported that IE 11 changed its user agent string from MSIE to IE with the 'like gecko' command included. Microsoft may be doing this to stop web developers stop feeding broken IE 6-8 code and refusing to serve HTML 5/CSS 3 whenever it detects MSIE in its user agent string. Unfortunately this will break many business apps that are tied to ancient and specific version of IE. Will this cause more hours of work for web developers? Or does IE10+ really act like Chrome or Firefox and this will finally end the hell of custom CSS tricks?"
The Internet

Post "Good Google," Who Will Defend the Open Web? 133

psykocrime writes "The crazy kids at Fogbeam Labs have started a discussion about Google and their relationship with the Open Web, and questioning who will step up to defend these principles, even as Google seem to be abdicating their position as such a champion. Some candidates mentioned include Yahoo, IBM, Red Hat, Mozilla, Microsoft and The Wikimedia Foundation, among others. The question is, what organization(s) have both the necessary clout and the required ethical principles, to truly champion the Open Web, in the face of commercial efforts which are clearly inimical to Open Source, Open Standards, Libre Culture and other elements of an Open Web?"
Firefox

No Firefox For iOS, Says Mozilla's Product Head 318

hypnosec writes "Jay Sullivan, Mozilla's VP of Product, has revealed that the non-for-profit organization is not going to build an iOS version of its Firefox web browser as long as Apple doesn't mend its unfriendly ways towards third party browsers. Speaking at SXSW in a mobile browser wars panel Sullivan said that Mozilla is neither building nor planning to build a Firefox version for Apple's iOS. Mozilla pulled Firefox Home from the App Store back in September 2012 following Apple's not so accommodating attitude."
Security

Chrome, Firefox, IE 10, Java, Win 8 All Hacked At Pwn2Own 183

mask.of.sanity writes "Annual Canadian hack fest Pwn2Own is famous for leaving a trail of bloodied software bits and today it did not disappoint. Security researchers tore holes through all major web browsers, breaking Windows 8 and Java, too (though the latter feat is not remarkable). Thankfully for the rest of us, the cashed-up winners will disclose the holes quietly to Microsoft, Mozilla, Google and Oracle, and the proof of concept attack code will remain in the hands of organisers only."
Microsoft

A New Version of MS Office Every 90 Days 292

Billly Gates writes "It appears Microsoft is following Chrome's agile development model like Mozilla did. At a recent tech conference, Kurt DelBene, president of the Office division, said they have mechanisms in place to update Office on a quarterly basis. Of course to get these new wondrous features and bugfixes you have to have a subscription to Office 365. Are the customers who most prefer subscriptions (corporate) going to want new things in the enterprise every 90 days? It is frustrating to see so many of them still on IE 7, XP, and Office 2003, which hurts Windows and Office sales and holds back innovation. At the same time, the accountants notice significant savings by keeping I.T. costs down with decade/semi decade updates to their images, while I.T. only puts out fires in between. Will this bring change to that way of doing things, or will Microsoft's cloud offerings with outsourced Exchange and Sharepoint make up for it using cost savings and continually updated software in the enterprise?"
Bug

HTML5 Storage Bug Can Fill Your Hard Drive 199

Dystopian Rebel writes "A Stanford comp-sci student has found a serious bug in Chromium, Safari, Opera, and MSIE. Feross Aboukhadijeh has demonstrated that these browsers allow unbounded local storage. 'The HTML5 Web Storage standard was developed to allow sites to store larger amounts of data (like 5-10 MB) than was previously allowed by cookies (like 4KB). ... The current limits are: 2.5 MB per origin in Google Chrome, 5 MB per origin in Mozilla Firefox and Opera, 10 MB per origin in Internet Explorer. However, what if we get clever and make lots of subdomains like 1.filldisk.com, 2.filldisk.com, 3.filldisk.com, and so on? Should each subdomain get 5MB of space? The standard says no. ... However, Chrome, Safari, and IE currently do not implement any such "affiliated site" storage limit.' Aboukhadijeh has logged the bug with Chromium and Apple, but couldn't do so for MSIE because 'the page is broken" (see http://connect.microsoft.com/IE). Oops. Firefox's implementation of HTML5 local storage is not vulnerable to this exploit."
Cellphones

LG Not Working On Windows Phone 8 Devices 123

helix2301 sends this quote from CNET: "LG's reluctance to embrace Windows Phone 8 underscores the difficulties that the platform faces with both consumers and vendor partners. LG was one of the early partners that signed on with Microsoft, releasing the LG Quantum in the first wave of Windows Phone devices. Microsoft's has a great relationship with Nokia, which is considered in the industry first among equals when it comes to Microsoft partners, has some vendors reassessing their own support for the operating system. Over the past year or so, LG has been focusing on Android and has started building phones running on Mozilla's Firefox mobile OS."
Businesses

How Paid Apps On Firefox OS Will Work 74

An anonymous reader writes "Mozilla has put up a blog post about how building a paid app will work for Firefox OS. The Firefox Marketplace will host web apps, and Mozilla is quick to point out that the apps won't lock you into Firefox OS. They will use the receipt protocol, which other devices can support. If they end up doing so, users could buy the app just once and run it anywhere. 'There is, of course, a chicken vs. egg problem here so Mozilla hopes to be the egg that helps prove out the decentralized receipt concept and iterate on the protocol. Mozilla invites other vendors to help us work on getting receipts right so that paid apps are as portable and "webby" as possible.' Mozilla has a JavaScript API for exposing device receipts, and a client-side library can then contact a verification service URL from the receipt." Somewhat related: a recent panel at Mobile World Congress consisted of representatives for Firefox OS, Ubuntu for Phones, and Sailfish OS. They spoke about the need for alternatives to Android and iOS, and how manufacturers and carriers actually seem eager to use these new operating systems to differentiate their products
Firefox

A Few Improvements for Firefox's Android UI 81

The latest Firefox for Android nightly build now features a number of changes to the UI with the goals of "...keeping a clear distinction between different types of tabs; making better use of the screen real estate on different form-factors and orientations; and being more compliant with Android’s design language. ... the tabs tray is now divided into sections for each type of tab — regular, private, and remote — so that you always keep things separate and organized. Furthermore, once you select a private tab, the main toolbar becomes dark as a clear sign that you're in a different browsing mode. ... We now use a horizontal scrolling tabs tray whenever it improves our use of the screen space. This is achieved with a TwoWayView ... We've recently landed a new skin for Firefox for Android that is more aligned with Android's Holo design language. Almost all textures and gradients were replaced by flat colors giving a much lighter feel to the browser."
Cellphones

18 Carriers Sign Up for Firefox OS Phones 107

Several readers sent word of a Mozilla announcement that 18 carriers have committed to launching phones running Firefox OS. The carriers are primarily from markets in South America and Europe. They include Deutsche Telekom, Telefonica, and Sprint. The devices running Firefox OS will be made by LG, ZTE, Huawei, and Alcatel, and all will be powered by a Qualcomm Snapdragon chipset. The new mobile operating system is built to allow HTML5 apps to run directly on the device, a solution Mozilla thinks will give it an edge when playing catch-up to all the software available for Android and iOS devices. "Developers are busy and don't have time to learn a new programming language. We believe that the only remaining eco-system is the web and there are more developers for the web than for any other platform in the world," said Jay Sullivan. According to Reuters, "Mozilla will initially look to compete in so-called 'emerging economies' in Latin America, Eastern Europe and Asia, where many people still use older phone models and have yet to upgrade to more expensive smartphones that feature touchscreens and high-speed Internet connections."
Firefox

Firefox Will Soon Block Third-Party Cookies 369

An anonymous reader writes "Stanford researcher Jonathan Mayer has contributed a Firefox patch that will block third-party cookies by default. It's now on track to land in version 22. Kudos to Mozilla for protecting their users and being so open to community submissions. The initial response from the online advertising industry is unsurprisingly hostile and blustering, calling the move 'a nuclear first strike.'"

Slashdot Top Deals