Democratic Underground Latest Greatest Lobby Journals Search Options Help Login
Google

Mozilla: Firefox Plugin Shipped With Malicious Code

Printer-friendly format Printer-friendly format
Printer-friendly format Email this thread to a friend
Printer-friendly format Bookmark this thread
This topic is archived.
Home » Discuss » Latest Breaking News Donate to DU
 
Megahurtz Donating Member (1000+ posts) Send PM | Profile | Ignore Thu May-08-08 02:34 PM
Original message
Mozilla: Firefox Plugin Shipped With Malicious Code
Source: Yahoo News

>>>" Mozilla warned Wednesday that a malicious program inserted adware code into a Firefox plugin that has been downloaded thousands of times over the past three months.

Because of a virus infection, the Vietnamese language pack for Firefox 2 was polluted with adware, Mozilla security chief Window Snyder said in a blog posting. "Everyone who downloaded the most recent Vietnamese language pack since February 18, 2008 got an infected copy," she wrote. "Mozilla does virus scans at upload time but the virus scanner did not catch this issue until several months after the upload."

Mozilla is now going to add additional scans of its software to prevent this kind of thing from happening in the future, she said.

The Xorer Trojan

The malware in the language pack is from the Xorer Trojan, according to discussion on Mozilla's Bugzilla developer Web site, which indicates that Mozilla developers first discovered the issue on Tuesday."<<<

Read more: http://news.yahoo.com/s/pcworld/145617



Shit! :argh:

Printer Friendly | Permalink |  | Top
Tangerine LaBamba Donating Member (1000+ posts) Send PM | Profile | Ignore Thu May-08-08 02:36 PM
Response to Original message
1. Vietnam?
It never ends..........
Printer Friendly | Permalink |  | Top
 
uppityperson Donating Member (1000+ posts) Send PM | Profile | Ignore Thu May-08-08 02:37 PM
Response to Original message
2. k&r, I use mozilla but not vietnamese language pack.
Printer Friendly | Permalink |  | Top
 
Megahurtz Donating Member (1000+ posts) Send PM | Profile | Ignore Thu May-08-08 02:48 PM
Response to Reply #2
5. Same here
although my computer has been acting exceptionally weird lately.:shrug:

Printer Friendly | Permalink |  | Top
 
khaos Donating Member (192 posts) Send PM | Profile | Ignore Thu May-08-08 02:38 PM
Response to Original message
3. shipped where?
Printer Friendly | Permalink |  | Top
 
WyldRogue Donating Member (312 posts) Send PM | Profile | Ignore Thu May-08-08 02:57 PM
Response to Reply #3
7. Not shipped anywheres....
Edited on Thu May-08-08 03:09 PM by WyldRogue
... it's a download so no idea where you got the 'shipped' idea from. Essentially it's a plug-in (.jar file) that programmers make for the Firefox browser to add additional functionality to the aforementioned browser (tab management, right-click functions, etc...)

Apparently, someone decided to code in a trojan/RAT(Random Access Trojan) into the Vietnamese Language pack for whatever asinine reason (not sure if they outsourced the task of coding language packs to a company or individual) but if they don't outsource, then someone on the Mozilla team is trying to sabotage the Firefox browser for some unknown reason...

That is why you DOWNLOAD the plug-in to your HD (instead of allowing the .jar to install right away), associate .jar files to either 7-zip or WinRAR and scan the actual file yourself to make sure you don't compromise your computer
Printer Friendly | Permalink |  | Top
 
khaos Donating Member (192 posts) Send PM | Profile | Ignore Thu May-08-08 03:30 PM
Response to Reply #7
12. got it from the headline of the OP
was being facetious ;-P
Printer Friendly | Permalink |  | Top
 
WyldRogue Donating Member (312 posts) Send PM | Profile | Ignore Thu May-08-08 03:36 PM
Response to Reply #3
13. Ahh...
... there's that 'shipped' word LOL

Odd that the 'shipped' word was used since you don't 'ship' plug-ins anywhere. Upload - Download - Code - Debug are a few words you can use but Shipped is definitely way off base.

Thanx for pointing my eyes in the right direction haha
Printer Friendly | Permalink |  | Top
 
Schema Thing Donating Member (1000+ posts) Send PM | Profile | Ignore Thu May-08-08 02:47 PM
Response to Original message
4. DAAAAAAAMN YOUUUU JOHN McCAAAAAIIINNNN!!!
the Manchurian candidacy has begun.
Printer Friendly | Permalink |  | Top
 
meegbear Donating Member (1000+ posts) Send PM | Profile | Ignore Thu May-08-08 03:00 PM
Response to Reply #4
9. ...
:spray:
Printer Friendly | Permalink |  | Top
 
rAVES Donating Member (1000+ posts) Send PM | Profile | Ignore Thu May-08-08 03:02 PM
Response to Reply #4
10. lol
Printer Friendly | Permalink |  | Top
 
Vidar Donating Member (1000+ posts) Send PM | Profile | Ignore Thu May-08-08 05:51 PM
Response to Reply #4
18. Good one.
Printer Friendly | Permalink |  | Top
 
aquart Donating Member (1000+ posts) Send PM | Profile | Ignore Thu May-08-08 02:54 PM
Response to Original message
6. Which doesn't explain why my firefox has been crashing continuously.
But perhaps they'll get on it soon.
Printer Friendly | Permalink |  | Top
 
WyldRogue Donating Member (312 posts) Send PM | Profile | Ignore Thu May-08-08 02:59 PM
Response to Reply #6
8. What plug-ins...
... do you have installed on your browser?? There are so bad combinations of plug-ins that tend to muck up the browser if you have them installed concurrently.
Printer Friendly | Permalink |  | Top
 
DS1 Donating Member (1000+ posts) Send PM | Profile | Ignore Thu May-08-08 03:44 PM
Response to Reply #6
14. Mine too
Ever since the latest update

1-click weather
active stop button
adblock plus
advandced dork
dom inspector
farkit
farky
greasemonkey
ie tab
lola
piclens
tab mix plus
videodownloader
web developer
Printer Friendly | Permalink |  | Top
 
eek Donating Member (1000+ posts) Send PM | Profile | Ignore Thu May-08-08 03:13 PM
Response to Original message
11. I am a computer nitwit ,
I did look at my Firefox Contents folder and the "Get Info/Languages" thing.
I had apparently unchecked all languages save English.

My computer has been really dodgy lately - lots of freeze ups, intertubenets are snail-city-Arizona.

I have a Mac PoweBook G4.

Y'think I need to do anything else?


Thank you for the information!


ps: the McCain wizecrax =:toast:
Printer Friendly | Permalink |  | Top
 
Bush_MUST_Go Donating Member (378 posts) Send PM | Profile | Ignore Thu May-08-08 07:12 PM
Response to Reply #11
22. Can't you just "remove" any languages you wouldn't need? (It's in Prefs)
Printer Friendly | Permalink |  | Top
 
bitchkitty Donating Member (1000+ posts) Send PM | Profile | Ignore Thu May-08-08 03:53 PM
Response to Original message
15. Once you go Mac.... n/t
Printer Friendly | Permalink |  | Top
 
kentauros Donating Member (1000+ posts) Send PM | Profile | Ignore Thu May-08-08 03:59 PM
Response to Reply #15
16. Or with Opera...
;)
Printer Friendly | Permalink |  | Top
 
UpInArms Donating Member (1000+ posts) Send PM | Profile | Ignore Thu May-08-08 06:09 PM
Response to Reply #16
20. love my Opera
been 8 years now and I haven't been unhappy yet
Printer Friendly | Permalink |  | Top
 
fshrink Donating Member (1000+ posts) Send PM | Profile | Ignore Thu May-08-08 07:03 PM
Response to Reply #15
21. Or Ubuntu.
Printer Friendly | Permalink |  | Top
 
Heywood J Donating Member (1000+ posts) Send PM | Profile | Ignore Fri May-09-08 08:37 PM
Response to Reply #15
23. You lose a mouse button?
Printer Friendly | Permalink |  | Top
 
ret5hd Donating Member (1000+ posts) Send PM | Profile | Ignore Sat May-10-08 12:57 PM
Response to Reply #23
25. Really? I'm using a 3-button mouse on my mac right now as i type this.
Printer Friendly | Permalink |  | Top
 
zonkers Donating Member (1000+ posts) Send PM | Profile | Ignore Thu May-08-08 04:35 PM
Response to Original message
17. Charlie don't websurf..
Edited on Thu May-08-08 04:36 PM by zonkers


Printer Friendly | Permalink |  | Top
 
high density Donating Member (1000+ posts) Send PM | Profile | Ignore Thu May-08-08 05:54 PM
Response to Original message
19. It's only "Shit!" if you used the Vietnamese language pack.
Otherwise, there's nothing to see here.
Printer Friendly | Permalink |  | Top
 
Xenotime Donating Member (1000+ posts) Send PM | Profile | Ignore Sat May-10-08 10:21 AM
Response to Original message
24. What?!? no fucking plans to remove it! WELL FUCK THEM!
Printer Friendly | Permalink |  | Top
 
DU AdBot (1000+ posts) Click to send private message to this author Click to view 
this author's profile Click to add 
this author to your buddy list Click to add 
this author to your Ignore list Fri Apr 26th 2024, 05:39 PM
Response to Original message
Advertisements [?]
 Top

Home » Discuss » Latest Breaking News Donate to DU

Powered by DCForum+ Version 1.1 Copyright 1997-2002 DCScripts.com
Software has been extensively modified by the DU administrators


Important Notices: By participating on this discussion board, visitors agree to abide by the rules outlined on our Rules page. Messages posted on the Democratic Underground Discussion Forums are the opinions of the individuals who post them, and do not necessarily represent the opinions of Democratic Underground, LLC.

Home  |  Discussion Forums  |  Journals |  Store  |  Donate

About DU  |  Contact Us  |  Privacy Policy

Got a message for Democratic Underground? Click here to send us a message.

© 2001 - 2011 Democratic Underground, LLC