Internet Storm Center
Sign In
Sign Up
Handler on Duty:
Xavier Mertens
Threat Level:
green
Date
Author
Title
FIREFOX PLUGINS PENETRATION TESTING
2010-08-23
Manuel Humberto Santander Pelaez
Firefox plugins to perform penetration testing activities
FIREFOX
2015-08-07/a>
Tony Carothers
Critical Firefox Update Today
2014-10-14/a>
Johannes Ullrich
Updates for Firefox and Thunderbird. http://www.mozilla.org/firefox/new/
2014-04-29/a>
Russ McRee
Firefox 29.0 & Thunderbird 24.5 released: http://www.mozilla.org/security/known-vulnerabilities/
2014-03-19/a>
Mark Hofman
Mozilla released updates for Firefox ( v 28.0), Thunderbird (v 24.4) and Firefox Extended Support Release (ESR) updates to 24.4.0 (Fixes include the issues highlighted at the pwn2own contest.)
2014-02-04/a>
Johannes Ullrich
Firefox 27 Available http://www.mozilla.org/en-US/firefox/27.0/releasenotes/
2013-11-02/a>
Rick Wanner
Protecting Your Family's Computers
2013-08-07/a>
Johannes Ullrich
Firefox 23 and Mixed Active Content
2013-06-25/a>
Bojan Zdrnja
Mozilla Firefox 22 released, fixes 14 security vulnerabilities, more info at http://www.mozilla.org/en-US/firefox/22.0/releasenotes/
2013-05-14/a>
Swa Frantzen
Firefox & Thunderbird released
2013-04-03/a>
Mark Hofman
Firefox 20 and Thunderbird 17.0.5 updates
2013-02-19/a>
Johannes Ullrich
Firefox 19 Release with various security fixes.
2013-02-06/a>
Kevin Shortt
Firefox updated to 18.02 -> https://www.mozilla.org/en-US/firefox/18.0.2/releasenotes/
2013-01-15/a>
Rob VandenBrink
When Disabling IE6 (or Java, or whatever) is not an Option...
2013-01-09/a>
Rob VandenBrink
Firefox and Thunderbird Updates
2013-01-08/a>
Richard Porter
Firefox 18 Released, Security Fixes http://www.mozilla.org/security/known-vulnerabilities/firefox.html
2012-12-01/a>
Guy Bruneau
Firefox 17.0.1 Bug Fixes - http://www.mozilla.org/en-US/firefox/17.0.1/releasenotes/
2012-10-28/a>
Tony Carothers
Firefox 16.02 Released
2012-10-11/a>
Rob VandenBrink
Firefox 16 / Thunderbird 16 updates
2012-08-28/a>
Johannes Ullrich
Firefox 15 Released (includes silent future updates) http://www.mozilla.org/en-US/firefox/15.0/releasenotes/buglist.html
2012-07-17/a>
Jim Clausing
Firefox 14.0.1, Thunderbird 14.0 out - both claim security fixes, but release notes not updated yet with security details
2012-06-20/a>
Raul Siles
Firefox 13.0.1 Update
2012-06-06/a>
Jim Clausing
Firefox, Thunderbird, and Seamonkey Security Updates
2012-03-27/a>
Johannes Ullrich
Firefox 3.6 EOL
2012-02-11/a>
Mark Hofman
Yet another version of Firefox has been released. One security fix. More info can be found here: https://www.mozilla.org/en-US/firefox/10.0.1/releasenotes/
2012-01-31/a>
Russ McRee
Firefox 10 and VMWare advisories and updates
2011-12-22/a>
Johannes Ullrich
Firefox 9 Security Fixes
2011-12-21/a>
Chris Mohan
Firefox 9 has been released patching known vulnerabilities http://www.mozilla.org/security/known-vulnerabilities/firefox.html#firefox9
2011-11-08/a>
Swa Frantzen
Firefox 8.0 released
2011-09-30/a>
Tony Carothers
Firefox v. 7.0.1 Is Live
2011-09-27/a>
Jason Lam
Firefox 3.6.23 security update is out and so is version 7 (time to break some add-on)
2011-09-06/a>
Guy Bruneau
Firefox 6.0.2 released to removed trust to DigiNotar certificate authority http://www.mozilla.org/en-US/firefox/6.0.2/releasenotes/
2011-08-31/a>
Johannes Ullrich
Firefox/Thunderbird 6.0.1 released to blocklist bad DigiNotar SSL certificates
2011-08-16/a>
Scott Fendley
Firefox 3.6.20 Corrects Several Critical Vulnerabilities
2011-08-14/a>
Guy Bruneau
FireCAT 2.0 Released
2011-07-13/a>
Kevin Shortt
Firefox Update 5.0.1 Available - http://www.mozilla.com/en-US/firefox/new/
2011-06-21/a>
Guy Bruneau
Firefox 5.0 is out with support Do Not Track on Multiple Platform - http://www.mozilla.com/en-US/firefox/new/
2011-06-09/a>
Richard Porter
One Browser to Rule them All?
2011-05-16/a>
Jason Lam
Firefox 3.5 forced upgrade coming soon
2011-04-29/a>
Guy Bruneau
Firefox, Thunderbird and SeaMonkey Security Updates
2011-04-10/a>
Raul Siles
Recent security enhancements in web browsers (e.g. Google Chrome)
2011-03-23/a>
Johannes Ullrich
Firefox 4 Security Features
2011-03-23/a>
Johannes Ullrich
Firefox 3 Updates and SSL Blocklist extension
2011-03-04/a>
Mark Hofman
And a new version of Firefox (thx all) hits the road, Version 3.6.15 more details here http://www.mozilla.com/en-US/firefox/3.6.15/releasenotes/ (and I agree it was a bit quick after 3.6.14)
2011-03-02/a>
Chris Mohan
Updates: Firefox 3.6.14/3.5.17, Thunderbird 3.1.8, Adobe Flash v10.2.152.32 & WireShark 1.4.4
2011-02-26/a>
Rick Wanner
Firefox 4 Beta 12 released
2011-01-10/a>
Manuel Humberto Santander Pelaez
VirusTotal VTzilla firefox/chrome plugin
2010-12-09/a>
Mark Hofman
Firefox version 3.6.13 is being pushed out, time to update (thanks Vincent). Thunderbird 3.1.7 and 3.0.11 can also be added to the list as well as SeaMonkey 2.0.11. - M
2010-11-15/a>
Stephen Hall
Mozilla Firefox 3.6.12 Remote Denial Of Service
2010-10-28/a>
Rick Wanner
Firefox 3.6.12 available - http://www.mozilla.com/en-US/firefox/personal.html
2010-10-26/a>
Pedro Bueno
Firefox news
2010-10-20/a>
Jim Clausing
Firefox 3.6.11 and 3.5.14 released, includes security updates ( http://www.mozilla.com/firefox/3.6.11/releasenotes/ )
2010-08-23/a>
Manuel Humberto Santander Pelaez
Firefox plugins to perform penetration testing activities
2010-07-25/a>
Rick Wanner
New Firefox Version, 3.6.8
2010-07-25/a>
Rick Wanner
Mozilla advisory for Firefox...Upgrade to 3.6.8. http://www.mozilla.org/security/announce/2010/mfsa2010-48.html
2010-07-23/a>
Mark Hofman
Firefox 3.6.8 is out. Yes it only seems like yesterday when you installed FF 3.6.7 (it was for me). The release notes say a stability issue has been fixed in this release.
2010-06-27/a>
Jim Clausing
Firefox 3.6.6 out - fixes issues with "crash protection"
2010-06-23/a>
Scott Fendley
Mozilla Firefox Updates
2010-04-02/a>
Guy Bruneau
Firefox 3.6.3 fix for CVE-2010-1121 http://www.mozilla.org/security/announce/2010/mfsa2010-25.html
2010-03-20/a>
Scott Fendley
Firefox 3.6.2 to be released March 30
2010-03-12/a>
Mark Hofman
Firefox 3.6 is being pushed out to users. http://www.mozilla.com/en-US/firefox/3.6/releasenotes/
2010-01-21/a>
Chris Carboni
Firefox Upgrade Available
2010-01-06/a>
Guy Bruneau
Firefox security and stability update for version 3.5.7 and 3.0.17 available for download
2009-12-17/a>
Daniel Wesemann
overlay.xul is back
2009-12-16/a>
Mark Hofman
Firefox 3.5.6 is available, time to update.
2009-11-06/a>
Mark Hofman
A new version of Firefox (3.5.5) just became available. According to the release notes they are stability improvements.
2009-10-28/a>
Johannes Ullrich
Firefox 3.5.4 released. Lots of security bug fixes. (thanks Gilbert!)
2009-10-17/a>
Rick Wanner
Mozilla disables Microsoft plug-ins?
2009-10-16/a>
Adrien de Beaupre
Disable MS09-054 patch, or Firefox Plugin?
2009-10-08/a>
Johannes Ullrich
Firefox Plugin Collections
2009-09-10/a>
Guy Bruneau
Firefox 3.5.3 and 3.0.14 has been released
2009-08-04/a>
Mark Hofman
Firefox Updates
2009-07-22/a>
Chris Carboni
Firefox 3.0.12 is Available
2009-07-19/a>
Marcus Sachs
Mozilla Comments on Firefox 3.5.1 issue
2009-07-17/a>
Stephen Hall
Firefox 3.5.1 has been released
2009-07-14/a>
Swa Frantzen
Firefox new exploit
2009-06-30/a>
Chris Carboni
Firefox 3.5 is available
2009-06-11/a>
Rick Wanner
Firefox 3.0.11 is available
2009-03-27/a>
David Goldsmith
Firefox 3.0.8 Released
2009-03-19/a>
Mark Hofman
Browsers Tumble at CanSecWest
2009-03-04/a>
Deborah Hale
Firefox Releases version 3.0.7
2009-02-04/a>
Daniel Wesemann
Firefox 3.0.6
2008-12-17/a>
donald smith
Firefox 3.0.5 fixes several security issues.
2008-11-13/a>
Jim Clausing
New Firefoxen out
2008-09-26/a>
Patrick Nolan
Firefox v2.0.0.17 and Thunderbird v2.0.0.17 release fixes vulnerabilities
2008-09-25/a>
Jim Clausing
Firefox 3.0.3 will be out probably tomorrow
2008-07-17/a>
Mari Nichols
Firefox Releases 3.0.1 and fixes 3 security vulnerabilities
2008-07-16/a>
Maarten Van Horenbeeck
Firefox 2.0.0.16 fixes two security vulnerabilities
2008-07-02/a>
Jim Clausing
Firefox 2.0.0.15 is out
2008-06-19/a>
William Stearns
Firefox vunerability
2008-06-16/a>
Marcus Sachs
Firefox 3.0 to be Released on Tuesday
2008-05-08/a>
Joel Esler
COMPROMISED FILE IN VIETNAMESE LANGUAGE PACK FOR FIREFOX 2
2008-04-17/a>
Chris Carboni
Firefox Update
2008-03-26/a>
Raul Siles
Firefox 2.0.0.13 is out
2008-03-24/a>
Raul Siles
Next-generation Web browsers?
PLUGINS
2013-05-23/a>
Adrien de Beaupre
MoVP II
2010-08-23/a>
Manuel Humberto Santander Pelaez
Firefox plugins to perform penetration testing activities
2009-10-17/a>
Rick Wanner
Mozilla disables Microsoft plug-ins?
PENETRATION
2020-08-10/a>
Bojan Zdrnja
Scoping web application and web service penetration tests
2019-04-26/a>
Rob VandenBrink
Pillaging Passwords from Service Accounts
2016-09-04/a>
Russ McRee
Kali Linux 2016.2 Release: https://www.kali.org/news/kali-linux-20162-release/
2014-08-09/a>
Adrien de Beaupre
Complete application ownage via Multi-POST XSRF
2011-10-26/a>
Rick Wanner
Critical Control 17:Penetration Tests and Red Team Exercises
2010-08-23/a>
Manuel Humberto Santander Pelaez
Firefox plugins to perform penetration testing activities
2010-08-16/a>
Raul Siles
Blind Elephant: A New Web Application Fingerprinting Tool
2010-06-06/a>
Manuel Humberto Santander Pelaez
Nice OS X exploit tutorial
2010-04-13/a>
Adrien de Beaupre
Web App Testing Tools
2010-02-22/a>
Rob VandenBrink
New Risks in Penetration Testing
2009-07-27/a>
Raul Siles
New Hacker Challenge: Prison Break - Breaking, Entering & Decoding
2009-04-21/a>
Bojan Zdrnja
Web application vulnerabilities
2008-09-20/a>
Rick Wanner
New (to me) nmap Features
TESTING
2020-08-10/a>
Bojan Zdrnja
Scoping web application and web service penetration tests
2018-12-16/a>
Guy Bruneau
Random Port Scan for Open RDP Backdoor
2018-07-02/a>
Guy Bruneau
Hello Peppa! - PHP Scans
2017-09-06/a>
Adrien de Beaupre
Modern Web Application Penetration Testing , Hash Length Extension Attacks
2017-05-13/a>
Guy Bruneau
Has anyone Tested WannaCry Killswitch? - https://blog.didierstevens.com/2017/05/13/quickpost-wcry-killswitch-check-is-not-proxy-aware/
2016-09-04/a>
Russ McRee
Kali Linux 2016.2 Release: https://www.kali.org/news/kali-linux-20162-release/
2016-01-20/a>
Xavier Mertens
/tmp, %TEMP%, ~/Desktop, T:\, ... A goldmine for pentesters!
2015-11-09/a>
John Bambenek
ICYMI: Widespread Unserialize Vulnerability in Java
2014-08-09/a>
Adrien de Beaupre
Complete application ownage via Multi-POST XSRF
2011-10-26/a>
Rick Wanner
Critical Control 17:Penetration Tests and Red Team Exercises
2011-08-26/a>
Daniel Wesemann
User Agent 007
2011-01-24/a>
Rob VandenBrink
Where have all the COM Ports Gone? - How enumerating COM ports led to me finding a “misplaced” Microsoft tool
2010-08-23/a>
Manuel Humberto Santander Pelaez
Firefox plugins to perform penetration testing activities
2010-08-16/a>
Raul Siles
Blind Elephant: A New Web Application Fingerprinting Tool
2010-06-06/a>
Manuel Humberto Santander Pelaez
Nice OS X exploit tutorial
2010-04-13/a>
Adrien de Beaupre
Web App Testing Tools
2009-07-27/a>
Raul Siles
New Hacker Challenge: Prison Break - Breaking, Entering & Decoding
2009-04-21/a>
Bojan Zdrnja
Web application vulnerabilities
2008-09-20/a>
Rick Wanner
New (to me) nmap Features
Homepage
Diaries
Podcasts
Jobs
Data
TCP/UDP Port Activity
Port Trends
SSH/Telnet Scanning Activity
Weblogs
Threat Feeds Activity
Threat Feeds Map
Useful InfoSec Links
Presentations & Papers
Research Papers
API
Tools
DShield Sensor
DNS Looking Glass
Honeypot (RPi/AWS)
InfoSec Glossary
Contact Us
Contact Us
About Us
Handlers
About Us
Slack Channel
Mastodon
Bluesky
X
Make the web a better place by
sharing the SANS Internet Storm Center
with others