Mozilla has banned nearly 200 malicious Firefox add-ons over the last two weeks
#1
Information 
Quote:Over the past two weeks, Mozilla's add-on review team has banned 197 Firefox add-ons that were caught executing malicious code, stealing user data, or using obfuscation to hide their source code.
 
The add-ons have been banned and removed from the Mozilla Add-on (AMO) portal to prevent new installs, but they've also been disabled in the browsers of the users who already installed them.
 
The bulk of the ban was levied on 129 add-ons developed by 2Ring, a provider of B2B software. The ban was enforced because the add-ons were downloading and executing code from a remote server.
 
According to Mozilla's rules, add-ons must self-contain all their code, and not download code dynamically from remote locations. Mozilla has recently begun strictly enforcing this rule across its entire add-on ecosystem.
 
A similar ban for downloading and executing remote code in users' Firefox browsers was also levied against six add-ons developed by Tamo Junto Caixa, and three add-ons that were deemed fake premium products (their names were not shared).
 
Bans were also levied for illegally collecting user data. Mozilla staff banned an unnamed add-onWeatherPool and Your SocialPdfviewer - toolsRoliTrade, and Rolimons Plus.
But there were also bans for malicious behavior. Mozilla reviewers banned 30 add-ons that exhibited various types of malicious behavior.

Mozilla listed only the add-on IDs, not their names, so add-on developers can appeal the ban and remove the malicious behavior. One add-on who passed the appeal process was the Like4Like.org Addon, initially believed to be collecting and submitting user credentials or tokens of social media websites to another website.

Read more: https://www.zdnet.com/article/mozilla-ha...two-weeks/
[-] The following 2 users say Thank You to silversurfer for this post:
  • harlan4096, ismail
Reply


Forum Jump:


Users browsing this thread:
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
Random YouTube Vidoes
Kool — 11:25
Google Chrome 147.0.7727.116/117
Google Chrome 147....harlan4096 — 11:00
Brave 1.89.143 (Chromium 147.0.7727.117)
Release v1.89.143 ...harlan4096 — 10:59
Ubuntu 26.04 LTS Resolute Raccoon is Her...
Canonical today an...harlan4096 — 10:58
Vivaldi 7.9 Build 3970.59
Vivaldi 7.9 Build ...harlan4096 — 10:56

[-]
Birthdays
Today's Birthdays
No birthdays today.
Upcoming Birthdays
avatar (51)steakelask
avatar (45)Termoplenka
avatar (51)Toligo

[-]
Online Staff
There are no staff members currently online.

>