ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Office applications Toolkit

Firefox security claims rubbished

Michael Kanellos CNET News.com

Published: 23 Mar 2005 12:00 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Even with increased popularity, the Firefox Web browser won't face as many security problems as Internet Explorer, according to the president of the Mozilla Foundation.

"There is nothing that will be perfect," said Mitchell Baker, president and chief lizard wrangler of the Mozilla Foundation, during a panel discussion at PC Forum in Scottsdale Arizona. (PC Forum is owned by CNET Networks, publisher of ZDNet UK.)

Still, Firefox, developed by the Mozilla Foundation, won't harbour nearly as many security flaws as those that have Microsoft's Internet Explorer, and increasing popularity won't change that, Mitchell predicted.

Some critics challenge that assumption. Symantec CEO John Thompson and other security executives have claimed that open source programs will become more vulnerable as they pick up more users, because more hackers will become attracted to it.

Last month, Mozilla issued a major security update to fix several flaws, including one that would allow domain spoofing.

"There is this idea that market share alone will make you have more vulnerabilities," Baker said. "It is not relational at all."

Part of Firefox' better security profile comes from how it is developed, compared with Internet Explorer, she said. "Not being in the operating system is a phenomenal advantage for us," Baker said.

Another benefit, Baker said, comes from the fact that Firefox does not support Active X plug-ins. For years, some consumers and analysts have lambasted Firefox because it couldn't run Active X.

"It turns out it [not running Active X] is only less convenient until you get hacked," she said. "Then it [Active X] becomes a disadvantage."

Mozilla is part of an industry effort to create an Active X alternative that would let plug-in applications such as Macromedia Flash run within the Web browser without the security risks associated with Active X. Others involved in that effort include browser makers Opera Software and Apple, and plug-in makers Sun, Macromedia and Adobe.

In general, classic code flaws tend to be fairly easy to fix once they are found, she said. More difficult problems to guard against are the ones that exploit human behaviour, like phishing.

"In some of these cases, the solution is very difficult to determine," she said. "There are some circumstances where the speed won't be as fast."

On another note, Baker added that the open source movement still faces some growing pains. Large commercial customers are often not completely comfortable with open source licensing, particularly because they are familiar with traditional licensing models.

She also said that new forms of public licences are inevitable, as are conflicts and inconsistencies between different public licences.

"If someone comes up with something, they have the right to determine the terms under which they give it away," she said.

CNET News.com's Paul Festa contributed to this report.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with HP

Did you find this article useful?
82 out of 186 people found this useful



Company/Topic Alerts

Create a new alert from the list below:









Related Jobs

FIX Analyst / Support - Contract - Inv Banking - London

FIX Analyst / Support - Contract - Inv Banking - London This role is for an experienced FIX Protocol analyst. You will have a strong background and ...

Fix Protocol Analyst - Contract - London City / NY

Fix Protocol Analyst - Contract - London City / NY My client is seeking an experienced FIX protocol analyst to join their team on a contractual ...

Esupport Analyst - Contract - Tier 1 Inv Banking

Microsoft Office support experience - Internet browser support experience eg Firefox / IE - Bloomberg experience - Ideally knowledge of supporting ...

Vista Upgrade Blog

The game's up for Vista

I got an interesting invite last night to the media launch of a dedicated gaming centre housed in an HMV store in central London. Resplendent with around 80 Quad core PCs and Dual... More

1 comment

Windows Driver Updates

Because of my recent adventures with Windows Vista on my Lifebook, I've had to learn about and deal with the differences between Vista and XP in third-party device driver distribution... More

2 comments

Windows XP SP3 Installed

I have downloaded and installed Service Pack 3 for Windows XP Professional on my Fujitsu Lifebook S6510. Everything went smoothly, and it seems to work just fine. I don't see anything... More

Post a comment

Discussions

61320 61320

Bletchley Park

Saturday 17 May 2008, 9:28 AM

5 comments

Featured Talkback

"We don't recommend specific technologies — we promote the use of technology per se." What sort of nonsense is this?? Every Becta endorsed IT supplier to schools is a Microsoft shop. Every single one.

By: 1000193068

Read full story:
Becta takes Microsoft to the OFT