Mozilla Firefox? FU



The Spread Firefox Team became aware this week that the server hosting Spread Firefox, our community marketing site, has been accessed by unknown remote attackers who attempted to exploit a security vulnerability in TWiki software installed on the server. The TWiki software was disabled as soon as we were aware of the attempts to access SpreadFirefox.com. This exploit was limited to SpreadFirefox.com and did not affect mozilla.org web sites or Mozilla software.

We have scanned Spread Firefox servers and at this time do not believe any sensitive data was taken, but as a precautionary measure we have shutdown the site and will be rebuilding the web site from scratch. We also recommend that you change your Spread Firefox password and the password of any accounts where you use the same password as your Spread Firefox account. We will notify you again when the site is back up with instructions on how to change your password. (Note: We do use MD5 hashing on the passwords, but MD5 cannot protect all passwords against off-line dictionary style attacks.)

After Spread Firefox was compromised in July, we instituted procedures to ensure that we apply all security fixes to the software running the site (Drupal and PHP) as soon as they become available. Unfortunately, those procedures overlooked the installation of the TWiki software since it is not used by the main Spread Firefox site. When the system is rebuilt, all the software will be audited to ensure that security updates will be applied in a timely manner. We deeply regret this incident and any inconvenience this may have caused you. Sincerely, Spread Firefox Team

Mozilla Foundation

Now I know why Opera made their own Community Site… They had to know what they had on the most important sections of their own website which deals with the actual user…

Leave a Reply


Related Posts

Better looking Firefox in Ubuntu

Here are some command line steps to improve the looks of web control in Gnome Ubuntu: sudo su wget http://users.tkk.fi/~otsaloma/art/firefox-form-widgets.tar.gz tar -xvzf firefox-form-widgets.tar.gz cp

WordPress 2.0 and Mozilla Firefox

Something's wrong. I updated this blog to WordPress 2.0 and the default template seems to be breaking in the latest

I made it to Mozilla.org Homepage! :D

Well, I prefer Opera over Firefox personally. But the truth is Firefox is the real alternative for Internet Explorer discards.

So, You think Firefox is oh so cool?

Well. I do not. Nor do this individual... Looks like someone discovered what 80 million people who have downloaded Mozilla

Opera Mobile faces a new challenge

I consider Opera to be a much better web browser when compared to Mozilla Firefox. But Firefox is kicking Opera’s

Tags