Symantec: Browser Bugs on the Rise

SANTA MONICA, Calif. — Symantec has released its biannual Internet Security Threat Report, which assesses risk for leading browsers. The report found that only Opera saw its total number of bugs decrease, compared to Mozilla’s Firefox browser, which lead the field with 47 security bugs found by Symantec’s engineering team.

Vincent Weafer, who directed the study for Symantec, said there is no such thing as a safe browser, pointing out that nearly ever product on the market saw an increase in security bugs.

“If you've got a browser, make sure you're configuring it correctly,” Weafer said. “That's a far better strategy than running some browser just because you haven't heard of it.”

According to the study, Firefox’s total number of bugs increased almost threefold from six-months ago, increasing from 17 to 47 bugs. Microsoft’s Internet Explorer had 38, and Apple’s Safari saw its numbers double to 12 bugs. Opera’s bugs dropped from nine to seven over the study period.

The report also found that while Explorer remains the most popular browser for hackers to attack, 31 percent of all browser attacks targeted more than one browser. Foxfire was the target of 20 percent of all hacker attacks.

Weafer attributed part of the increase in the total number of bugs found to the fact that more people are looking for them.

“People are encouraged and getting money for finding vulnerabilities, so now you have more people looking,” said Weafer, explaining that firms such as 3Com and VeriSign have begun offering rewards for finding bugs.

There is also a growing black market for the information, Weafer said.

According to Marc Maiffret of eEye Digital Security, the growing black market in browser bugs represents the softpoint of attack for many hackers.

"Everyone has realized that targeting the applications on the desktop is a better way to break in and steal things than server flaws," Maiffret said.

The Symantec study found that 86 percent of all attacks target home users, mostly in the U.S., where 37 percent of all attacks originate.

While the study saddled Firefox with the unsavory title of having the most bugs, it did offer Mozilla praise, saying that it was the fastest to respond to security flaws, with an average patch time of one day. Opera came in second, averaging two days. Safari followed, with a five-day turnaround window. Microsoft came in last, averaging nine days per patch.

Copyright © 2024 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

2024 XBIZ Miami Show Schedule Announced

XBIZ is pleased to announce the release of the full show schedule for XBIZ Miami, the adult industry's biggest summer conference, set to take place May 13-16.

Video: FSC's Alison Boden Testifies Before California Assembly Committee Regarding Age Verification

Free Speech Coalition Executive Director Alison Boden testified before the California Assembly on Tuesday, in opposition to the state’s version of the age verification bills being sponsored around the country by anti-porn religious conservative activists.

Princess Mindy Is LoyalFans' 'Featured Creator' for May

LoyalFans has named Princess Mindy as its Featured Creator for May.

Republicans Behind Oklahoma's New Age Verification Law Gleeful About Potential Pornhub 'Exit'

Republican Gov. Kevin Stitt has signed into law Oklahoma’s version of the age verification legislation being sponsored around the country by anti-porn religious conservative activists.

Woodhull Freedom Foundation Debuts 'Fact Checked by Woodhull' Program

The Woodhull Freedom Foundation has launched its new "Fact Checked by Woodhull" program, which uses peer-reviewed research, compiled and analyzed by professional researchers, to debunk myths weaponized to justify the repression of sex, sexuality and gender expression.

Supreme Court Denies Stay of Texas' Age Verification Law

The U.S. Supreme Court has denied a request by Free Speech Coalition (FSC) and other plaintiffs to stay Texas’ controversial age verification law while the court decides on a petition that would effectively overturn it on constitutional grounds.

QueerCrush Relaunches Through YourPaysitePartner

QueerCrush.com has relaunched through YourPaysitePartner (YPP).

High Society Models Joins Pineapple Support as Sponsor

Talent agency High Society Models has joined the ranks of over 70 adult businesses and organizations committing funds and resources to Pineapple Support.

LoyalFans Announces Banksie Collaboration With I-15 Billboard

LoyalFans has announced its new collaboration with content creator Banksie (formerly Lindsey Banks) with a billboard on I-15, between L.A. and Las Vegas.

Chaturbate Reaches Settlement With Texas Over Age Verification

Chaturbate’s parent company, Multi Media, has reached a settlement with Texas regarding the state’s controversial age verification law, HB 1181.

Show More