Slashdot Mirror


Firefox Greasemonkey Extension Security Problem

Mr2001 writes "A recent thread on the Greasemonkey mailing list suggests that the popular Firefox extension is fatally insecure. It seems rogue pages can read any file from your disk and send it to any site, using an XmlHttpRequest. Time to uninstall GM?"

1 of 443 comments (clear)

  1. Problems everywhere by mfloy · · Score: 0, Redundant

    This jsut goes to show the Microsoft isn't the only company who writes insecure software. I seriously doubt any company can write 100% secure software, so I base my judgement on if they can quickly fix holes that are found and learn from their mistakes.