Vulnerability In Firefox 2.0.0.5
July 24th, 2007 by Henry AddoCame across this post and would like to caution people who uses Firefox’s password management feature. It has been reported that is has a vulnerability which allows malicious website to steal passwords.
According to the post, if you let firefox remember your password, you are at a big risk from the flaw. I always see that feature as a security risk, no wonder I don’t use it. I better rely on my current means of remembering passwords than browser based password management.
To me, not only mailicious website can steal passwords but malicious users of your machine too can steal passwords.
There is a discussion on going as to if that feature should be removed or not. To me alone, it should be completely zapped or made as an extention to be downloaded and used only if the user want to take the risk.




