Showing posts with label NoScript. Show all posts
Showing posts with label NoScript. Show all posts

Thursday, 13 August 2015

Tor Browser Enhances Privacy And YouTube Support


For Internet users who want to protect their anonymity and privacy on the web is a completely new version of Tor Browser appeared. It is the first version of Tor Browser 5.0 . Besides several vulnerabilities that are fixed This version contains several measures to protect user privacy.

For example, there are added protective measures to prevent identification on the basis of key strokes. The NoScript whitelist is reset. NoScript is a Firefox extension that prevents the execution of scripts on websites. NoScript uses a whitelist of domains where scripting is allowed. The reason for the reset is that NoScript previous updates certain areas were added to the whitelist. To avoid repetition NoScript will not be able to update the whitelist. Further supporting the playback of HTML5 video on YouTube improved.

Zero day

Tor Browser is based on Firefox. Recently, a zero-day flaw was used in the PDF reader Firefox to attack users. According to the Tor Project, the developer of Tor Browser, the problem was not present in version 4.5 of Tor Browser. Users of the trial version of Tor Browser 5.0 were vulnerable. However, the attack could not be carried out if the security slider Tor Browser stood tall. The browser has recently acquired a slider that allows users to specify the security level. Updating to the new versions of Tor Browser via the browser or Torproject.org . Globally, 2.5 million people use the Tor network.

Sunday, 5 July 2015

Critical Vulnerabilities In Tor And Tails Corrected


There are new versions of Tor Browser and Tails appeared, two programs for people who want to protect their privacy and anonymity on the Internet, where critical vulnerabilities are fixed. Users also have strongly advised to upgrade, since users of Tor Browser still using an old version surfed in the past been the target of attacks, their actual IP address was traced .

Via Tor Browser, users can easily hide their IP address. The browser consists of a modified version Firefox and software to connect to the network-Tor. This week a new version of Firefox, allowing the developers of Tor Browser also had to release a new version. Tor Browser 4.5.3 also includes a new version of OpenSSL and NoScript Torbutton, as well as a fix for a bug that allowed the browser crash and a patch to improve the usability of Tor Browser on websites. Updating via Torproject.org if the update function of the browser.

Tails

Users of Tails get urgent advice to Tails 1.4.1 upgrade. Tails is a complete operating system from a DVD or USB stick to use and is totally focused on privacy. It is based on Debian and contains various tools to access the Internet anonymously, including Tor Browser. In the past, for which the new versions of Tor Browser and Tails were not coordinated.

Therefore Tails users could sometimes several weeks stuck with an outdated Tor Browser. Now Tails development team has been waiting for the new Tor Browser, which added to the operating system. In addition, several Debian-related vulnerabilities are resolved. Updating via the Tails website .

Thursday, 2 July 2015

Researcher Circumvents NoScript Firefox Through Google Cloud


A researcher has managed to circumvent the popular Firefox extension NoScript by using the Google cloud. NoScript is an extension that can block JavaScript and other code on websites. It thus prevents malicious code on a compromised Web site can be started or ads, trackers and active content are automatically loaded.

The add-on protects both security and privacy. More than 2.2 million Firefox users have installed NoScript, making it one of the most popular extensions for Firefox. NoScript also allows users to set up a whitelist domains. Scripts in this domain will be run automatically. Some areas are already standard on the NoScript whitelist, such as Mozilla, YouTube, Google and Yahoo.

This concerns not only the fields, but also the sub-domains under the domain. Besides google.com also scripts on voorbeeld.google.com automatically accepted by NoScript. Recently discovered researcher Matthew Bryant that one of the areas that had expired stood on the NoScript whitelist and thus was available to everyone. Bryant registered the domain and placed here Javascript code, which automatically performed by NoScript. The developer of NoScript came with an update so that the domain from the default whitelist has been removed.

The publication of Bryant urged another researcher to look for a new opportunity, as well as subdomains of whitelisted domains attack vector for an attack can be used. Researcher Linus Sarud saw that the domain googleapis.com standard in the whitelist, meaning that script code storage.googleapis.com this is done by default. Through this domain, users can host files as they use the Google cloud storage. Another researcher named Mathias Karlsson worked out the idea and came up with code that NoScript was again defeated.

The problem has been fixed by the domain googleapis.com change to the whitelist in ajax.googleapis.com . However, subdomains are still automatically whitelist. Users of NoScript, however, can delete the default whitelist and only own domains to this place.

Wednesday, 4 February 2015

NoScript Perhaps Best Firefox Security


The NoScript extension is perhaps the best way for Firefox users to secure the browser, although the extension may be at the expense of the browsing experience. That says Jean Taggart anti-virus company Malwarebytes. Taggart discusses various measures available to Firefox users to screw on both security and privacy. As discussed different extensions and settings. However, it is NoScript that can yield the most protection.

The popular extension block active content on websites such as trackers, plug-ins and JavaScript. Additionally, it provides protection against cross-site scripting and other web attacks. According Taggart average users have no idea how many active content on websites is active and how much is going on in the background. "The installation and use of NoScript is an eye opener," the security expert. Installing NoScript may ensure that web sites, because all kinds of scripts are being blocked, no longer works at all.

Users should also be allowed to decide what scripts and what not. Taggart makes a comparison with driving. Normal Internet is like driving an automatic, while NoScript is a car with a stick shift. "If you do not know how to operate the clutch at the start of a hill you get established." In addition, using NoScript requires some self-discipline. Users who constantly switch on all kinds of scripts thereby undermining the purpose of the extension.

In the list of Taggart is the most popular Firefox extension, Adblock Plus, not specified. The security expert notes that many websites advertising revenues depend. Ads are also a popular attack vector. Using NoScript however prevents infected ads are loaded and thus prevents the discussion or Adblock Plus should or should not be used, Taggart decision.

Tuesday, 3 February 2015

Firefox and Chrome Can Leak IP VPN Users

Firefox and Google Chrome have implemented a technology allowing the IP address of VPN users can be traced. Before Daniel Roesler warns on GitHub . The problem is caused by WebRTC , an open source project developed by Google that provides browsers Real-Time Communications (RTC).

Both Firefox and Chrome have implemented whereby the WebRTC technology called " STUN requests "can send to STUN servers. Through these requests, the local and public IP addresses of the user can be captured via JavaScript. This is especially a problem for VPN users, who often use VPNs to protect their identity. Roesler made ​​this demonstration to capture the IP addresses. Readers Reddit give different solutions to the problem, such as disabling WebRTC in Firefox and Chrome.

In Firefox, this can by in the address bar " about: config "to enter and then put" media.peerconnection.enabled "to" false ".Google Chrome users can do this in the address bar " chrome: // flags / "to enter and then" Disable WebRTC device enumeration "to turn. Other solutions have JavaScript disabled, using Firefox NoScript or Chrome extension WebRTC Block. Additionally, VPN users get TorGuard advised to set the VPN tunnel directly to their router.

Friday, 11 April 2014

The Ins and Outs of ransomware


Malware researcher Bart Blaze has published an extensive article about ransomware on his blog. In the article he interviews a number of anti-malware experts who give their opinion on the current trends and the evolution of ransomware.
The following experts shared their insights:
  • Malware researcher Malekal
  • Adam Kujawa - Malwarebytes Head of Malware Intelligence
  • Fabio Assolini - Kaspersky Senior Security Researcher
  • Fabian Wosar - Emsisoft GmbH Administration / Development
  • Hendrik Adrian - MalwareMustDie Security Research Group

Experts

The experts will discuss, among other things: their first acquaintance with ransomware, the psychological aspect of ransomware, how ransomware spreads, how effective it is in practice, and last but not least, how can one protect against this specific type of malware.
The experts agree on one thing: the first versions of ransomware were quite primitive but very effective. Over the years it has evolved greatly ransomware and cybercriminals are earning millions of dollars with it. The reason that this type of malware is so fast becoming popular is the fact that ransomware savings than "rogueware" (fake antivirus software), and in particular the variants encrypt files, such as Crypto Locker more money.
"Ransomware as Crypto Locker is currently more efficient than the FBI called Ransomware because almost everyone knows this form now. When the FBI was everyone thought it was legitimate, variant first spotted" explains Adam Kujawa out. "I can not give you exact percentages because I do not have it, but the golden rule is that when a particular attack vector of attack strategy is reused, meaning that the tactic is effective and therefore works. We now identify malware like Prison Locker (or Power Locker ) due to the success of Crypto Locker, just as we saw hundreds of variants and families of the FBI Ransomware in 2012. "

Recommendations

The article also contains several recommendations for both end users and companies. How can one protect against ransomware and what can one do when a computer is infected.

End users

For end users, it comes down to the following: keep all your software up to date, install an antivirus program, remove unused software (eg Java), install security add-ons such as NoScript in the browser (and update it also ), no download applications via spam or suspicious or unknown websites and make backups (and disconnect the external drive after taking the backup).

Companies

For companies, the recommendations are as follows: Use strong passwords for servers, RDP switch off if possible, use a spam filter, using group policies, limit the rights of users, instruct your users and also applies here: make backups.

Never pay

Victims of ransomware should certainly never proceed to payment. There is no guarantee that the cyber criminals the files or accessing the computer will recover. Maybe you even more vulnerable to a new attack, the cyber criminals will know after all that you will pay. By following the recommendations, however, you reduce the chance of becoming a victim already drastically.
Do you want more information, detailed advice and tips, then read the article at Blaze's Security Blog.