Mozilla at the University of Warwick
On Tuesday 28th February, Mark Goodwin from Mozilla’s Application Security team will be presenting a guest lecture at the University of Warwick. This session will introduce students to web security … Read more
On Tuesday 28th February, Mark Goodwin from Mozilla’s Application Security team will be presenting a guest lecture at the University of Warwick. This session will introduce students to web security … Read more
We’ve decided to reorganize our security teams and as part of the change we are going to be using this blog in some new ways. The most notable change is … Read more
Earlier today we sent an email to all certificate authorities in the Mozilla root program to clarify our expectations around certificate issuance. In particular, we made it clear that the … Read more
Issue The libpng graphics library, used by Firefox and Thunderbird as well as many other software packages, contains an exploitable integer overflow bug. An attacker could craft malicious images which … Read more
Sometimes we’re asked for guidance on something and the result seems worth sharing; this one is about useful things to consider when using JSON for information that needs to stay … Read more
With the launch of browserid.org we have been busy reviewing the code and design of BrowserID. However, we also wanted to: Enforce privilege separation at the system level Render the … Read more
On January 25th, with the help of many volunteers, we hosted the first Mozilla Capture The Flag (CTF). The Mozilla CTF will be a recurring security event, although we are … Read more
We are excited to get this much attention with our CTF. Unfortunately, this means that we will have to close down registration soon. Registration will be closed on Friday or … Read more
This is an update on the prior Mozilla CTF announcement: The registration starts now! As mentioned earlier, the CTF is on January 25th and will go for 24 hours. Everybody … Read more
As a part of my internship here at Mozilla, I have continued work on Garmr. Garmr is a python script that performs basic web security checks in accordance with our … Read more
Several members of the Mozilla Security team will participate in an AMA on reddit this morning. You can find it here!
Announcing the Mozilla CTF hacking competition Per the announcement during Frederik Braun’s presentation today, Mozilla will host a CTF event in January, 2012. The Mozilla CTF will take … Read more