Windows 10 will reach EOS (end of support) on October 14, 2025. For more information, see this article.

সহায়তা খুঁজুন

Avoid support scams. We will never ask you to call or text a phone number or share personal information. Please report suspicious activity using the “Report Abuse” option.

আরও জানুন

Which extensions are safe, because security failure with XPCOM ?

  • 2 উত্তরসমূহ
  • 1 এই সমস্যাটি আছে
  • 1 দেখুন
  • শেষ জবাব দ্বারা cachris

more options

Hello,

Regarding the latest news about extensions failure, because XPCOM, can you let me know how can I check if the extensions I'm using are safe ? Do I have to disable all extensions ?

Thank you.

Chris

Hello, Regarding the latest news about extensions failure, because XPCOM, can you let me know how can I check if the extensions I'm using are safe ? Do I have to disable all extensions ? Thank you. Chris

All Replies (2)

more options

hi chris, i'm not sure what you exactly have read about "security failure with XPCOM", but there have been some articles about security research lately, describing a general weakness in the addon architecture by the lack of isolation between single addons (not all of the articles reflected that super accurately). i would consider this more of a theoretical risk (or a point that should raise awareness for mozilla's addon reviewers), since when you install a malicious addon it can of course perform all these actions directly as well and would not depend on exploiting weaknesses of other extensions. fully reviewed addons you install from addons.mozilla.org can be considered safe imho.

more options

Hi philipp,

I was reading the document in http://www.buyukkayhan.com/publications/ndss2016crossfire.pdf and because using firefox (too) with some add-in, I just wanted to know if there was any way to be sure that the extensions are safe ! Of course I read also the sentence in the mentioned document that say : "we were unable to conduct a detailed scientific study of the attack in practice"

As I'm not a specialist of such extensions I was looking for more informations that the one's available on some internet sites.

Thank you for your help.

Chris