The dangers of browser add-ons

For discussions about security.
Post Reply
Message
Author
belham2
Posts: 1715
Joined: Mon 15 Aug 2016, 22:47

The dangers of browser add-ons

#1 Post by belham2 »

....warning against the dangers of browser add-ons---specifically when doing anything sensitive online. As browsers progress, the reasons to keep convincing ourselves that we need these 3rd party, un-supervised (spare the argument that they are vetted, because in fact none really are), mile-wide holed and possibly, no, reality of them being an-attack-vector for malicious actors, just do yourself a favor and steer clear of them, all of them. This, as these next two yrs come to pass, is only going to get deeper and more widespread as things come to light about these add-ons:

http://www.securityweek.com/hijacked-ex ... users-risk

bark_bark_bark
Posts: 1885
Joined: Tue 05 Jun 2012, 12:17
Location: Wisconsin USA

#2 Post by bark_bark_bark »

There's nothing bad about browser extension themselves; There's only a problem when you install malicious ones. BTW, Most of the extensions I use have the source code hosted on Github.
....

User avatar
rufwoof
Posts: 3690
Joined: Mon 24 Feb 2014, 17:47

#3 Post by rufwoof »

Simple answer is only run a browser with addons in a restricted userid. Under root, don't install addons. FatDog is the more able presently to provide that separation ... or the Dogs that can multi-user. Standard pup's are behind the times on that front with little apparent movement.
[size=75]( ͡° ͜ʖ ͡°) :wq[/size]
[url=http://murga-linux.com/puppy/viewtopic.php?p=1028256#1028256][size=75]Fatdog multi-session usb[/url][/size]
[size=75][url=https://hashbang.sh]echo url|sed -e 's/^/(c/' -e 's/$/ hashbang.sh)/'|sh[/url][/size]

Post Reply