Slashdot Mirror


Firefox 57 Brings Better Sandboxing on Linux (bleepingcomputer.com)

Catalin Cimpanu, writing for BleepingComputer: Firefox 57, set to be released tomorrow, will ship with improvements to the browser's sandbox security feature for Linux users. The Firefox sandboxing feature isolates the browser from the operating system in a way to prevent web attacks from using a vulnerability in the browser engine and its legitimate functions to attack the underlying operating system, place malware on the filesystem, or steal local files. Chrome has always run inside a sandbox. Initially, Firefox ran only a few plugins inside a sandbox -- such as Flash, DRM, and other multimedia encoding plugins.

3 of 124 comments (clear)

  1. Download Link... by unique_parrot · · Score: 4, Informative
  2. Re:How about giving users a choice? by theweatherelectric · · Score: 4, Informative

    including some used for security

    Like what? uBlock Origin works in Firefox 57, so does Adblock Plus, so does Ghostery, so does Privacy Badger, so does HTTPS Everywhere, etc. The only one missing from AMO at the moment is NoScript but that will be released soon.

  3. Re: Firefoxalypse by KiloByte · · Score: 4, Informative

    Out of 37 extensions I use, there are WebExt equivalents for, *drumroll* 11. That much only because I spent some time looking for replacements.

    APIs that would be required to reimplement those extensions aren't even coded yet, and any code that gets merged (which usually takes months) needs additional 18 weeks to percolate into an unstable ("non-ESR") release. With Firefox 52 EOL in June, the chances enough of extensions required for sane use will be ready by then are about nil. And the default, with nothing for privacy but tons of junk like Pocket or Telemetry, is almost as far from sanity as Chromium.

    I guess it's time to look into packaging Waterfox or another fork.

    --
    The creatures outside looked from Alt-Right to Antifa; but already it was impossible to say which was which.