Email us! Subscribe to Liquidmatrix!

Vulnerabilities in Firefox Password Manager

Everyone’s favourite web browser…ok, well mine anyway, has a security vulnerability in it’s password manager.

RCSR (Reverse Cross-Site Request) attacks are also actively targeting Microsoft Internet Explorer, however a flaw in Firefox makes the attack much more likely to succeed.

The Password Manager component of FireFox can be exploited to send a username and password combination to an attacker’s computer without the user’s knowledge.

Users of both Firefox and Internet Explorer need to be aware that their information can be stolen in this way when visiting blog and forum websites at trusted addresses.

For more information and the proof of concept read on.

Article Link

Tags: , , , ,

Tag It:
  • Digg
  • del.icio.us
  • Slashdot
  • Technorati
  • SphereIt
  • StumbleUpon
  • Fark
  • YahooMyWeb
  • Furl
  • Spurl
  • Ma.gnolia
  • NewsVine
Related Articles:

  • BitLocker Recovery Password Details
  • Mozilla Firefox Multiple Vulnerabilities
  • Exploit-Me Firefox Plugins
  • Adobe Flash FLA File Parsing Vulnerabilities
  • Oracle Plans 46 Patches for Update
  • Leave a Comment