Malware Writers Targeting Firefox

MOUNTAIN VIEW, Calif. – As millions make the switch from Microsoft Internet Explorer to the Mozilla Foundation’s Firefox, spyware writers are following closely behind, according to security experts.

“There’s still a lot more spyware that gets through the holes in Internet Explorer than through holes in Mozilla, but it’s changing,” said Anthony Arrott, director of threat research for InterMute, a developer of anti-spyware software.

Mozilla last month announced that downloads of Firefox had hit 25 million since the program was launched, boosting its total global usage share to nearly 8.5 percent, according to web analytics company OneStat.com.

The alternative web browser’s growing popularity has been based in large part on the perception that it is more secure and less prone to spyware attacks than IE, which owns roughly 87 percent of the browser market worldwide.

But Arrott said that as more people migrate to Firefox, users can expect to see more intrusive pop-up ads and spyware attacks because it will become more profitable for spyware and adware developers to create applications that specifically target the browser.

“The reason there is so much spyware in IE and not [Firefox] is not because IE has so many more inherent security problems but because IE has so many more users,” Arrott said.

IE has come under attack recently in the press over security flaws. Niels Brinkman, co-founder of OneStat.com, said that concerns over widely reported IE vulnerabilities may lead many IE5 users to switch to Firefox rather than upgrading to IE6.

“It looks like users of IE5 are switching to Firefox instead of upgrading to IE6,” Brinkman said.

According to web analytics site WebSideStory.com, however, the speed at which Firefox is gaining market share has slowed down. Firefox's market share grew 15 percent over the last five weeks, compared to growth of 34 percent in the period between Nov. 5 to Dec.3 and 22 percent between Dec. 3 and Jan. 14.

What's more, Arrott said Firefox attacks could become so widespread within the next six months that industry analysts and web security experts will stop recommending that users choose it over IE.

Meanwhile, Internet security firm iDefense yesterday reported the discovery of several security holes in Firefox verison 1.0 that hackers could potentially exploit to create what it described as a memory-heap overflow, sometimes called a buffer overflow, and remotely take control of a user’s computer.

In response, Mozilla Foundation released a statement recommending that users update to the latest versions of its browsers, Mozilla 1.7.6 and Firefox 1.0.1, which was released this week to address a different security flaw related to the way it handled international website domains.

Copyright © 2026 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

German Court: Regulator Can't Block Entire IG Accounts, Only Posts

A German court has ruled that while a regional media regulatory agency may block specific Instagram posts that include material deemed harmful to minors, it cannot ban an entire Instagram account due to such a post.

Brazil Lays Out Preliminary Guidelines for New AV Requirements

President Luiz Inácio Lula da Silva on Wednesday signed a decree establishing guidelines for new regulations requiring adult websites to age-verify users located in Brazil.

Senate Committee Debates Section 230 Reform

The U.S. Senate Committee on Commerce, Science, and Transportation held a hearing Wednesday on potential changes to Section 230 of the Communications Decency Act, which protects interactive computer services — including adult platforms — from liability for user-generated content.

Pearl Industry Network Offers Free Creator Memberships

Industry trade group Pearl Industry Network (PiN) has launched its free creator membership initiative.

Sam Bird Acquires Fanblast

Sam Bird, former co-director of global talent agency Surge, has acquired creator monetization tool Fanblast and named himself CEO.

'SheHerGirls' Launches Through Paysite.com

The braintrust behind PoleVixens has officially launched a new membership site, SheHerGirls, also through Paysite.com.

FTC Invites Public Comment on 'Click to Cancel' Rulemaking

The Federal Trade Commission (FTC) announced this week that it is seeking public comment on whether it should amend its Negative Option Rule to better address deceptive or unfair practices.

Aylo Rebuts Indiana AV Suit Claims Over VPN Access

Aylo this week asked a Marion Superior Court judge to dismiss Indiana’s lawsuit alleging that the company violated the state’s age verification law by failing to prevent access by users who employ VPNs and similar means to avoid geolocation.

'PSMTickling' Launches Through Paysite.com

PSMTickling.com has officially launched through Paysite.com.

Show More