<?xml version="1.0" encoding="UTF-8"?>

<rss version="2.0" xmlns:blogChannel="http://backend.userland.com/blogChannelModule">

<channel>
<title>Firefox is the Most Vulnerable Application in 2008 in Security</title>
<link>http://www.dslreports.com/forum/r21570285</link>
<description></description>
<language>en</language>
<pubDate>Wed, 09 Dec 2009 04:12:34 EDT</pubDate>
<lastBuildDate>Wed, 09 Dec 2009 04:12:34 EDT</lastBuildDate>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21607019</link>
<description><![CDATA[<A HREF="/useremail/u/197199"><b>Doctor Four</b></A> : Now it appears that this story is being spread as legit. by ZDnet's Zero Day blog, even though it is a thinly veiled marketing attempt: &raquo;<A HREF="http://blogs.zdnet.com/security/?p=2304" >blogs.zdnet.com/security/?p=2304</A><br><br>A response from the Mozilla Security blog, which states that the study is completely flawed: &raquo;<A HREF="http://blog.mozilla.com/security/2008/12/15/the-importance-of-good-metrics/" >blog.mozilla.com/security/2008/1&middot;&middot;&middot;metrics/</A><br><small>--<br>"The trouble with computers, of course, is that they are very sophisticated idiots." - Doctor Who (from Robot)<br></small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21607019</guid>
<pubDate>Fri, 19 Dec 2008 11:14:17 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21580496</link>
<description><![CDATA[<A HREF="/useremail/u/817075"><b>Kiwi</b></A> : Cheeze, this is getting ridiculous, folks around here <i>KNOW</i> how to lock & Load and people reading this BS, actually begin to believe they might have a problem because people buy into this crap, from some of the regulars here.<br><br>I want to see more threads about how to help those that need it, get firmed up; rather than these stupid damn scare tactics.<br><br>How about a thread on how to use email, lock your favourite browser down and tweak systems to make them secure. How about leaving idiot threads regards <i>"How can I scare the crap outa you, with no end in sight".</i><br><br>Get back to security and leave the "Scare small children" for those less interested in helping others.<br><br>Anyway, 0.2c.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21580496</guid>
<pubDate>Sun, 14 Dec 2008 14:48:10 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21580396</link>
<description><![CDATA[<A HREF="/useremail/u/1103537"><b>PrntRhd</b></A> : <div class="bquote"><small>said by  La Luna <A HREF="/useremail/u/429050"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br><div class="bquote"><small>said by  Trel <A HREF="/useremail/u/700992"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br>The one other problem is many times he lists a vulnerability that has already been fixed and a new version released.<br><br>However, never once has his post included that information.<br> </div>That, in my mind, is the biggest disservice with all his criticism of FF. He never, EVER, posts the patch or work around or fix, which is almost always included in the very article he links to. <br><br>If he was really posting to be helpful or just informative, he would include that information in the original post. Since he doesn't, it's obvious he has another agenda, one that has potential to be harmful to those who only stumble through here, read his post and leave with the WRONG information. Not everyone clicks on his links and finds out the "vulnerability" has been taken care of.<br><br>Since he knows none of us are going to bite, I can only conclude that he is purposely targeting new/inexperienced people or those who accidently stumble upon his "cry wolf" threads via some search engine.<br> </div>He also does not post that Firefox has an auto update feature so most users do get the latest version, not the earlier more vulnerable one. To say Firefox is more vulnerable because they release updates to fix it is standing logic on its head.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21580396</guid>
<pubDate>Sun, 14 Dec 2008 14:23:56 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21580112</link>
<description><![CDATA[<A HREF="/useremail/u/429050"><b>La Luna</b></A> : <div class="bquote"><small>said by  Trel <A HREF="/useremail/u/700992"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br>The one other problem is many times he lists a vulnerability that has already been fixed and a new version released.<br><br>However, never once has his post included that information.<br> </div>That, in my mind, is the biggest disservice with all his criticism of FF. He never, EVER, posts the patch or work around or fix, which is almost always included in the very article he links to. <br><br>If he was really posting to be helpful or just informative, he would include that information in the original post. Since he doesn't, it's obvious he has another agenda, one that has potential to be harmful to those who only stumble through here, read his post and leave with the WRONG information. Not everyone clicks on his links and finds out the "vulnerability" has been taken care of.<br><br>Since he knows none of us are going to bite, I can only conclude that he is purposely targeting new/inexperienced people or those who accidently stumble upon his "cry wolf" threads via some search engine.<br><small>--<br><b>1/20/09 The Beginning of the End<br> <br><A HREF="http://www.thereligionofpeace.com/">12,402 DEADLY TERROR ATTACKS SINCE 9/11</a></b>~~<b><A HREF="http://www.sarah-brightman.com/">SARAH BRIGHTMAN SYMPHONY WORLD TOUR</a></b></small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21580112</guid>
<pubDate>Sun, 14 Dec 2008 12:59:58 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21580058</link>
<description><![CDATA[<A HREF="/useremail/u/993250"><b>BinaryXtreme</b></A> : Jesus. Another post from you about how crappy Firefox is? Are you trying to prove something? If I search I can give you crap on any app but you're on a rant regarding FF. Get over it?]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21580058</guid>
<pubDate>Sun, 14 Dec 2008 12:44:54 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21579872</link>
<description><![CDATA[<A HREF="/useremail/u/197199"><b>Doctor Four</b></A> : One solution, at least for me and others who have that capability, is to put  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> on ignore. But then the entire topic would disappear, and I wouldn't be able to read the replies that totally and thoroughly debunk his FUD. This of course is where the entertainment value of reading one of his threads comes in.<br><small>--<br>"The trouble with computers, of course, is that they are very sophisticated idiots." - Doctor Who (from Robot)<br></small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21579872</guid>
<pubDate>Sun, 14 Dec 2008 11:51:55 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21579500</link>
<description><![CDATA[<A HREF="/useremail/u/934738"><b>Tommyastro</b></A> : Agreed, it's a total crock of you know what. ]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21579500</guid>
<pubDate>Sun, 14 Dec 2008 09:43:17 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21579010</link>
<description><![CDATA[<A HREF="/useremail/u/0"><b>anon</b></A> : <div class="bquote"><small>said by  PrntRhd <A HREF="/useremail/u/1103537"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br>I think that is what gets me going, Matunga does not listen to anything we say, and just announces whatever he has been programmed to say.<br> </div>The whole issue is a load of crap anyway. ALL browsers have vulnerabilities. At least it might shut the annoying "FF is much better than IE" gobshites up for a few minutes.  :)]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21579010</guid>
<pubDate>Sun, 14 Dec 2008 03:51:16 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21579059</link>
<description><![CDATA[<A HREF="/useremail/u/129458"><b>KrK</b></A> : I call bullcrap on this big-time.<br><br>Firefox isn't perfect, but it's patched pretty quickly, and there's no way in hell it's the most vulnerable application out there.<br><br>No way at all.<br><small>--<br>"Fascism should more properly be called corporatism because it is the merger of state and corporate power." -- Benito Mussolini<br></small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21579059</guid>
<pubDate>Sun, 14 Dec 2008 03:02:58 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21578043</link>
<description><![CDATA[<A HREF="/useremail/u/879997"><b>dadkins</b></A> : <div class="bquote"><small>said by  De Hollander <A HREF="/useremail/u/1601392"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br>Try another browser  :D  ;)<br> </div>There isn't a better one to try... Opera is it.  ;)<br><small>--<br>Think outside the Fox... <A HREF="http://www.opera.com/">Opera</a></small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21578043</guid>
<pubDate>Sat, 13 Dec 2008 21:25:12 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21577935</link>
<description><![CDATA[<A HREF="/useremail/u/1601392"><b>De Hollander</b></A> : Try another browser  :D  ;)]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21577935</guid>
<pubDate>Sat, 13 Dec 2008 20:59:17 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21577765</link>
<description><![CDATA[<A HREF="/useremail/u/1103537"><b>PrntRhd</b></A> : <div class="bquote"><small>said by  Steve <A HREF="/useremail/u/340145"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br><div class="bquote"><small>said by Doobie :</small><br><br> As far as I can see,  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> is just reporting what s//he finds somewhere else in the Net. I mean, this is not  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>'s own findings and spin? </div>Yes, these are strictly news clippings from elsewhere, and any one or two taken individually are no different than other security advisories noted here.<br><br>But when taken in the aggregate, a pattern emerges:<br><br>* Always attempts (poorly) to imply that open source is insecure<br>* No attempt whatsoever to engage in debate<br><br>Steve<br> </div>I think that is what gets me going, Matunga does not listen to anything we say, and just announces whatever he has been programmed to say.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21577765</guid>
<pubDate>Sat, 13 Dec 2008 20:13:59 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21577168</link>
<description><![CDATA[<A HREF="/useremail/u/167035"><b>unsub</b></A> : Eshh.<br><br>I'm not sure if you all want to keep up with the drama, or actually talk about what this list is about.<br><br>I am a bit curious as to what people do about the vulnerabilities in things that are not easily controlled through central administration. The security team at my work told me the most popular means of attack that they are seeing is though a flash vulnerability. How do companies deal with things like this?]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21577168</guid>
<pubDate>Sat, 13 Dec 2008 17:46:29 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576940</link>
<description><![CDATA[<A HREF="/useremail/u/700992"><b>Trel</b></A> : The one other problem is many times he lists a vulnerability that has already been fixed and a new version released.<br><br>However, never once has his post included that information.<br><small>--<br>/chown -R us:us /yourbase</small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576940</guid>
<pubDate>Sat, 13 Dec 2008 16:45:21 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576887</link>
<description><![CDATA[<A HREF="/useremail/u/634007"><b>SUMware</b></A> : <div class="bquote"><small>said by  nwrickert <A HREF="/useremail/u/1070900"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>  :</small><br><br><div class="bquote">matunga's bias is not the issue. The concern is his intentional, willful and repeated attempts to mislead, deceive, and lie in order to promote his agenda.</div>But aren't people overreacting?</div>No. Any poster that repeadedly attempts to blatently misinform others, irregardless of their agenda, should draw negative reaction.<br><div class="bquote"><small>said by  nwrickert <A HREF="/useremail/u/1070900"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>  :</small><br><br>And when we spend too many posts in ad hominem response, that tends to make the open source community look bad.</div>Not if the responses are pertinent, accurate and direct.<br><div class="bquote"><small>said by  nwrickert <A HREF="/useremail/u/1070900"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>  :</small><br><br>I think we would do better by simply responding appropriately to the issues raised by  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>, and leaving it at that.</div>Agreed. So your next comment below... would you still judge it appropriate by your standard? ;)<br><div class="bquote"><small>said by  nwrickert <A HREF="/useremail/u/1070900"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>  :</small><br><br>Incidently, when  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> originally started this thread with a title "Daft list names Firefox, Adobe and VMWare as top threats", I thought he had gotten something right for a change.  But then he came back and changed the title.  Such is life.</div>??? (can you imagine matunga's growing overwhelming dread when he realized that he got it right? oops, there I go. sorry.)]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576887</guid>
<pubDate>Sat, 13 Dec 2008 16:41:57 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576905</link>
<description><![CDATA[<A HREF="/useremail/u/156437"><b>dave</b></A> : Regardless of the merit of the linked articles, what is the point of posting links without accompanying them with discussion?]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576905</guid>
<pubDate>Sat, 13 Dec 2008 16:37:58 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576748</link>
<description><![CDATA[<A HREF="/useremail/u/1070900"><b>nwrickert</b></A> : <div class="bquote">matunga's bias is not the issue. The concern is his intentional, willful and repeated attempts to mislead, deceive, and lie in order to promote his agenda.</div>But aren't people overreacting?<br><br> matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>'s criticisms of open source are so easily and so speedily answered, that I think the overall effect is positive for open source.  And when we spend too many posts in ad hominem response, that tends to make the open source community look bad.<br><br>I think we would do better by simply responding appropriately to the issues raised by  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>, and leaving it at that.<br><br>Incidently, when  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> originally started this thread with a title "Daft list names Firefox, Adobe and VMWare as top threats", I thought he had gotten something right for a change.  But then he came back and changed the title.  Such is life.<br><small>--<br>AT&T dsl; Westell 327w modem/router; openSuSE 11.0; firefox 3.0.4</small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576748</guid>
<pubDate>Sat, 13 Dec 2008 15:49:00 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576690</link>
<description><![CDATA[<A HREF="/useremail/u/879997"><b>dadkins</b></A> : <div class="bquote"><small>said by  SUMware <A HREF="/useremail/u/634007"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br><div class="bquote"><small>said by Doobie  :</small><br><br>As far as I can see,  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> is just reporting what s//he finds somewhere else in the Net. I mean, this is not  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>'s own findings and spin?<br> </div>You may certainly choose to disregard matunga's long term MO and personally accept his posts as acceptable 'spin'.<br><br>Many of us recognize his malevolence toward, and disrespect of, readers here.<br> </div>That outlook can be applied to several of the regulars here as well...  :huh:<br><small>--<br>Think outside the Fox... <A HREF="http://www.opera.com/">Opera</a></small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576690</guid>
<pubDate>Sat, 13 Dec 2008 15:31:37 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576680</link>
<description><![CDATA[<A HREF="/useremail/u/634007"><b>SUMware</b></A> : <div class="bquote"><small>said by Doobie :</small><br><br>As far as I can see,  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> is just reporting what s//he finds somewhere else in the Net. I mean, this is not  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>'s own findings and spin?<br> </div>You may certainly choose to disregard matunga's long term MO and personally accept his posts as acceptable 'spin'.<br><br>Many of us recognize his malevolence toward, and disrespect of, readers here.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576680</guid>
<pubDate>Sat, 13 Dec 2008 15:29:22 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576623</link>
<description><![CDATA[<A HREF="/useremail/u/1352291"><b>marsh_0x</b></A> : 3.03 and prior was a bit vulnerable, quickly repaired with 3.04]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576623</guid>
<pubDate>Sat, 13 Dec 2008 15:16:07 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576577</link>
<description><![CDATA[<A HREF="/useremail/u/461572"><b>MarkAW</b></A> : <div class="bquote"><small>said by Doobie :</small><br><br><div class="bquote"><small>said by  MarkAW <A HREF="/useremail/u/461572"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>  :</small><br><br>To get newbies like your self...<br> </div> MarkAW <A HREF="/useremail/u/461572"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>. I said  I was "new here", not that I was a newbie. I believe there's a difference,<br> </div>What i said wasn't meant to be insulting to you and if that was the way i came across to you i apologise.<br><small>--<br>Do you ever get the feeling that the only reason we have elections is to find out if the polls were right?<br><br>The man who knows how will always have a job. The man who also knows why will always be his boss.</small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576577</guid>
<pubDate>Sat, 13 Dec 2008 15:07:07 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576568</link>
<description><![CDATA[<A HREF="/useremail/u/340145"><b>Steve</b></A> : <div class="bquote"><small>said by Doobie :</small><br><br> As far as I can see,  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> is just reporting what s//he finds somewhere else in the Net. I mean, this is not  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>'s own findings and spin? </div>Yes, these are strictly news clippings from elsewhere, and any one or two taken individually are no different than other security advisories noted here.<br><br>But when taken in the aggregate, a pattern emerges:<br><br>* Always attempts (poorly) to imply that open source is insecure<br>* No attempt whatsoever to engage in debate<br><br>Steve<br><small>--<br>Stephen J. Friedl | Unix Wizard | Microsoft Security MVP | Tustin, California USA | <A HREF="http://www.unixwiz.net">my web site</a></small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576568</guid>
<pubDate>Sat, 13 Dec 2008 15:04:52 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576551</link>
<description><![CDATA[<A HREF="/useremail/u/0"><b>anon</b></A> : <div class="bquote"><small>said by  Steve <A HREF="/useremail/u/340145"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br>Welcome! </div>Many thanks,  Steve <A HREF="/useremail/u/340145"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>].<br><br>As far as I can see,  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> is just reporting what s//he finds somewhere else in the Net. I mean, this is not  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>'s own findings and spin?]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576551</guid>
<pubDate>Sat, 13 Dec 2008 15:02:35 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576544</link>
<description><![CDATA[<A HREF="/useremail/u/731093"><b>dmbt</b></A> : <div class="bquote"><small>said by  Steve <A HREF="/useremail/u/340145"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br><div class="bquote"><small>said by Doobie :</small><br><br> Sorry, new here. What would  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>'s agenda be? </div> Welcome!<br><br> matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> believes that open source is less secure than Microsoft's stuff &mdash; which is a legitimately debatable point &mdash; but s/he does drive-by postings with partial or misleading information in an attempt to warrant a pro-Microsoft conclusion.<br><br>When s/he does this, the frothing fanboys come out of the woodwork and fall over themselves to correct the record and abuse the OP. It's almost unheard of for  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> to respond to counterpoints, but it <A HREF="/forum/r20925159-">has happened</a> once or twice.<br><br>His/her attempts have been so shameless and disingenuous (and tiring), that it really borders on trolling, but since there is always a figment of reality, some of us attempt non-frothing rebuttals to allow onlookers to come to their own conclusions.<br><br>Steve<br> </div>Yes, he is either a troll, or works in Microsofts FUD department. I have seen many like him, let the facts burry the FUD (unfortunetly, people (possibly non techy) see the headline and believe whatever it says.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576544</guid>
<pubDate>Sat, 13 Dec 2008 15:00:26 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576528</link>
<description><![CDATA[<A HREF="/useremail/u/1140294"><b>Blackbird</b></A> : Actually, I look forward to M's threads. I learn more about a wide variety of Microsoft software problems from the threads Matunga starts than from any other single source. The rebuttals to his posts almost invariably include copious references to reports citing Microsoft's own (and, yes, others') software problems that I often otherwise never knew existed... and, in some cases, I've been able to take action accordingly. <br><br>I consider his threads "must-read" (not his posts, necessarily) - purely for the stimulating and revealing responses they provoke. Just another example of the "law of unintended consequences" regarding his intentions in posting, I suppose...<br><small>--<br>If God wanted us to work with electrons, He'd make them big enough to see...</small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576528</guid>
<pubDate>Sat, 13 Dec 2008 14:57:47 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576515</link>
<description><![CDATA[<A HREF="/useremail/u/156437"><b>dave</b></A> : Speaking as a practitioner of the software arts, I'm highly amused by phrases like 'most vulnerable', as if there's some standard measurement of 'vulnerability' that is well-known to all.  (I don't know what such a measurement might be, but it wouldn't be 'consider all defects equally').<br><br>New contest: when we do have such an international standard unit, what should its name be?]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576515</guid>
<pubDate>Sat, 13 Dec 2008 14:55:25 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576513</link>
<description><![CDATA[<A HREF="/useremail/u/0"><b>anon</b></A> : <div class="bquote"><small>said by  MarkAW <A HREF="/useremail/u/461572"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br>To get newbies like your self...<br> </div> MarkAW <A HREF="/useremail/u/461572"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>. I said  I was "new here", not that I was a newbie. I believe there's a difference,]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576513</guid>
<pubDate>Sat, 13 Dec 2008 14:55:19 EDT</pubDate>
</item>

<item>
<title>msg deleted</title>
<link>http://www.dslreports.com/forum/remark,21576507</link>
<description><![CDATA[<A HREF="/useremail/u/0"><b>anon</b></A> : <small>deleted by a moderator</small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576507</guid>
<pubDate>Sat, 13 Dec 2008 14:53:34 EDT</pubDate>
</item>

<item>
<title>msg deleted</title>
<link>http://www.dslreports.com/forum/remark,21576505</link>
<description><![CDATA[<A HREF="/useremail/u/0"><b>anon</b></A> : <small>deleted by a moderator</small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576505</guid>
<pubDate>Sat, 13 Dec 2008 14:53:00 EDT</pubDate>
</item>

<item>
<title>msg deleted</title>
<link>http://www.dslreports.com/forum/remark,21576503</link>
<description><![CDATA[<A HREF="/useremail/u/0"><b>anon</b></A> : <small>deleted by a moderator</small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576503</guid>
<pubDate>Sat, 13 Dec 2008 14:52:33 EDT</pubDate>
</item>

<item>
<title>msg deleted</title>
<link>http://www.dslreports.com/forum/remark,21576478</link>
<description><![CDATA[<A HREF="/useremail/u/0"><b>anon</b></A> : <small>deleted by a moderator</small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576478</guid>
<pubDate>Sat, 13 Dec 2008 14:46:15 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576472</link>
<description><![CDATA[<A HREF="/useremail/u/340145"><b>Steve</b></A> : <div class="bquote"><small>said by Doobie :</small><br><br> Sorry, new here. What would  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>'s agenda be? </div> Welcome!<br><br> matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> believes that open source is less secure than Microsoft's stuff &mdash; which is a legitimately debatable point &mdash; but s/he does drive-by postings with partial or misleading information in an attempt to warrant a pro-Microsoft conclusion.<br><br>When s/he does this, the frothing fanboys come out of the woodwork and fall over themselves to correct the record and abuse the OP. It's almost unheard of for  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> to respond to counterpoints, but it <A HREF="/forum/r20925159-">has happened</a> once or twice.<br><br>His/her attempts have been so shameless and disingenuous (and tiring), that it really borders on trolling, but since there is always a figment of reality, some of us attempt non-frothing rebuttals to allow onlookers to come to their own conclusions.<br><br>Steve<br><small>--<br>Stephen J. Friedl | Unix Wizard | Microsoft Security MVP | Tustin, California USA | <A HREF="http://www.unixwiz.net">my web site</a></small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576472</guid>
<pubDate>Sat, 13 Dec 2008 14:45:12 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576465</link>
<description><![CDATA[<A HREF="/useremail/u/103090"><b>tempnexus</b></A> : <div class="bquote"><small>said by  SUMware <A HREF="/useremail/u/634007"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br><div class="bquote"><small>said by  Steve <A HREF="/useremail/u/340145"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>  :</small><br><br><div class="bquote"><small>said by  PrntRhd <A HREF="/useremail/u/1103537"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>   :</small><br><br>He is both wrong and biased. </div>Everybody has a bias - what's wrong with that?<br> </div>matunga's bias is not the issue. The concern is his intentional, willful and repeated attempts to mislead, deceive, and lie in order to promote his agenda.<br> </div>AMEN!]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576465</guid>
<pubDate>Sat, 13 Dec 2008 14:44:17 EDT</pubDate>
</item>

<item>
<title>msg deleted</title>
<link>http://www.dslreports.com/forum/remark,21576464</link>
<description><![CDATA[<A HREF="/useremail/u/0"><b>anon</b></A> : <small>deleted by a moderator</small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576464</guid>
<pubDate>Sat, 13 Dec 2008 14:43:48 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576434</link>
<description><![CDATA[<A HREF="/useremail/u/461572"><b>MarkAW</b></A> : <div class="bquote"><small>said by Doobie :</small><br><br><div class="bquote"><small>said by  SUMware <A HREF="/useremail/u/634007"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>  :</small><br><br>matunga's bias is not the issue. The concern is his intentional, willful and repeated attempts to mislead, deceive, and lie in order to promote his agenda.<br> </div>Sorry, new here. What would  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>'s agenda be?<br> </div>To get newbies like your self to fall for his fud.<br><br>Case and point &raquo;<A HREF="/forum/r21573941-Test-finds-Internet-Explorer-is-Worlds-worst-browser">Test finds Internet Explorer is Worlds worst  browser</A><br><small>--<br>Do you ever get the feeling that the only reason we have elections is to find out if the polls were right?<br><br>The man who knows how will always have a job. The man who also knows why will always be his boss.</small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576434</guid>
<pubDate>Sat, 13 Dec 2008 14:37:09 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576414</link>
<description><![CDATA[<A HREF="/useremail/u/0"><b>anon</b></A> : <div class="bquote"><small>said by  SUMware <A HREF="/useremail/u/634007"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br>matunga's bias is not the issue. The concern is his intentional, willful and repeated attempts to mislead, deceive, and lie in order to promote his agenda.<br> </div>Sorry, new here. What would  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>'s agenda be?]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576414</guid>
<pubDate>Sat, 13 Dec 2008 14:30:59 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576380</link>
<description><![CDATA[<A HREF="/useremail/u/356416"><b>Link Logger</b></A> : Considering I've never heard of these clowns before, and my bias is towards organizations who tend to be in the game more then posting one flame bait article a year, I think I'll just blow off this topic/information as wasted electrons.<br><br>Blake<br><small>--<br>Vendor: Author of <A HREF="http://www.linklogger.com">Link Logger</a> which is a traffic analysis and firewall logging tool</small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576380</guid>
<pubDate>Sat, 13 Dec 2008 14:20:25 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576316</link>
<description><![CDATA[<A HREF="/useremail/u/983262"><b>Stray Bullet</b></A> : I love Firefox!!!!!<br><br>Sorry :p]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576316</guid>
<pubDate>Sat, 13 Dec 2008 14:00:00 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576291</link>
<description><![CDATA[<A HREF="/useremail/u/340145"><b>Steve</b></A> : <div class="bquote"><small>said by  SUMware <A HREF="/useremail/u/634007"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br> matunga's bias is not the issue. The concern is his intentional, willful and repeated attempts to mislead, deceive, and lie in order to promote his agenda.<br> </div> And we have a winner; thank you.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576291</guid>
<pubDate>Sat, 13 Dec 2008 13:51:39 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576273</link>
<description><![CDATA[<A HREF="/useremail/u/634007"><b>SUMware</b></A> : <div class="bquote"><small>said by  Steve <A HREF="/useremail/u/340145"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br><div class="bquote"><small>said by  PrntRhd <A HREF="/useremail/u/1103537"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>  :</small><br><br>He is both wrong and biased. </div>Everybody has a bias - what's wrong with that?<br> </div>matunga's bias is not the issue. The concern is his intentional, willful and repeated attempts to mislead, deceive, and lie in order to promote his agenda.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576273</guid>
<pubDate>Sat, 13 Dec 2008 13:46:23 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576251</link>
<description><![CDATA[<A HREF="/useremail/u/1140294"><b>Blackbird</b></A> : Personally, I'm rather biased against sharing my biases.  :huh:<br><br>At least M shares. Freely. Even profusely...   ;)<br><small>--<br>If God wanted us to work with electrons, He'd make them big enough to see...</small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576251</guid>
<pubDate>Sat, 13 Dec 2008 13:40:42 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576227</link>
<description><![CDATA[<A HREF="/useremail/u/917630"><b>Cudni</b></A> : <div class="bquote"><small>said by  Steve <A HREF="/useremail/u/340145"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br>Everybody has a bias - what's wrong with that?<br> </div>it has to be a shared bias?<br><br>Cudni]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576227</guid>
<pubDate>Sat, 13 Dec 2008 13:35:38 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576225</link>
<description><![CDATA[<A HREF="/useremail/u/1103537"><b>PrntRhd</b></A> : <div class="bquote"><small>said by  Steve <A HREF="/useremail/u/340145"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>  :</small><br><br><div class="bquote"><small>said by  PrntRhd <A HREF="/useremail/u/1103537"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>   :</small><br><br>He is both wrong and biased. </div>Everybody has a bias - what's wrong with that?<br> </div>Nothing, I at least admit my bias if cornered.  <br><br>Matunga has posted 469 times in 487 visits.  He only posts, not here to discuss anything.  The record speaks for itself.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576225</guid>
<pubDate>Sat, 13 Dec 2008 13:34:55 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576211</link>
<description><![CDATA[<A HREF="/useremail/u/340145"><b>Steve</b></A> : <div class="bquote"><small>said by  PrntRhd <A HREF="/useremail/u/1103537"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br>He is both wrong and biased. </div>Everybody has a bias - what's wrong with that?]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576211</guid>
<pubDate>Sat, 13 Dec 2008 13:31:02 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21576196</link>
<description><![CDATA[<A HREF="/useremail/u/1103537"><b>PrntRhd</b></A> : Sorry, this is just more crap.  <br>Matunga is the perfect shill.  Just posts some FUD then never replies or discusses his own posts, that way he never is trapped into admitting he is wrong or biased.<br>He is both wrong and biased.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21576196</guid>
<pubDate>Sat, 13 Dec 2008 13:23:54 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21575887</link>
<description><![CDATA[<A HREF="/useremail/u/879997"><b>dadkins</b></A> : No worries!<br>I use Opera!  :o  :p<br><br>Yes, I'm <i>THAT</i> bored...  :huh:<br><small>--<br>Think outside the Fox... <A HREF="http://www.opera.com/">Opera</a></small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21575887</guid>
<pubDate>Sat, 13 Dec 2008 12:08:37 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21575781</link>
<description><![CDATA[<A HREF="/useremail/u/197199"><b>Doctor Four</b></A> : To quote a line from the Hitchhiker's Guide To The Galaxy:<br><br>"I'm sorry, I just don't believe a word of it."]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21575781</guid>
<pubDate>Sat, 13 Dec 2008 11:34:10 EDT</pubDate>
</item>

<item>
<title>msg deleted</title>
<link>http://www.dslreports.com/forum/remark,21573749</link>
<description><![CDATA[<A HREF="/useremail/u/0"><b>anon</b></A> : <small>deleted by a moderator</small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21573749</guid>
<pubDate>Fri, 12 Dec 2008 21:08:59 EDT</pubDate>
</item>

<item>
<title>msg deleted</title>
<link>http://www.dslreports.com/forum/remark,21573735</link>
<description><![CDATA[<A HREF="/useremail/u/0"><b>anon</b></A> : <small>deleted by a moderator</small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21573735</guid>
<pubDate>Fri, 12 Dec 2008 21:05:58 EDT</pubDate>
</item>

<item>
<title>msg deleted</title>
<link>http://www.dslreports.com/forum/remark,21573571</link>
<description><![CDATA[<A HREF="/useremail/u/0"><b>anon</b></A> : <small>deleted by a moderator</small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21573571</guid>
<pubDate>Fri, 12 Dec 2008 20:37:27 EDT</pubDate>
</item>

<item>
<title>OT but...</title>
<link>http://www.dslreports.com/forum/remark,21573331</link>
<description><![CDATA[<A HREF="/useremail/u/795407"><b>SnowyOne</b></A> : <div class="bquote"><small>said by  SUMware <A HREF="/useremail/u/634007"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br>Note: matunga retitled the thread from the original "<i>Daft list names Firefox, Adobe and VMWare as top threats</i>"...<br> </div>I've never had an opinion on the merits of  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>'s posts but this type of manipulation helps me understand some of the harsher criticism I've seen directed at him.<br><br><small>Personally I'd rather be guilty of posting something that flew in face of an agenda rather than manipulating facts to support an agenda.</small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21573331</guid>
<pubDate>Fri, 12 Dec 2008 19:48:16 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21573055</link>
<description><![CDATA[<A HREF="/useremail/u/0"><b>anon</b></A> : <div class="bquote"><small>said by  matunga <A HREF="/useremail/u/847301"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A><br>...My two FF machines are still looking good, only time IE is used on them is to do Microsoft Tuesday updates. Have to have the IE machine because of all the M$ fanboys (like the US government) who write M$ specific pages that only IE can run....<br>[/BQUOTE :</small><br><br>I have had no trouble running MU with IEtab or IEView as well as most sites that use IE specific tags.  I don't know if the   virtualization exposes the same security nor what your opinion is on these extensions however (like a memory leak) but Its something I like to point out whenever I hear about this.<br><br>Shame likewise politics like this have to happen though as I know several A++ certs who believe the same thing that firefox is less secure than IE.  The fact you even need a extension like this is sad as well]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21573055</guid>
<pubDate>Fri, 12 Dec 2008 18:51:30 EDT</pubDate>
</item>

<item>
<title>msg deleted</title>
<link>http://www.dslreports.com/forum/remark,21572736</link>
<description><![CDATA[<A HREF="/useremail/u/0"><b>anon</b></A> : <small>deleted by a moderator</small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21572736</guid>
<pubDate>Fri, 12 Dec 2008 17:56:13 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21572027</link>
<description><![CDATA[<A HREF="/useremail/u/634007"><b>SUMware</b></A> : <div class="bquote"><small>said by  Frodo <A HREF="/useremail/u/1354951"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A>  :</small><br><br>The Register also had an article abount this matter.<br>&raquo;<A HREF="http://www.theregister.co.uk/2008/12/12/app_threat_list/" >www.theregister.co.uk/2008/12/12&middot;&middot;&middot;at_list/</A><br> </div>Thanks for the link. From The Reg:<br>  <blockquote><small>said by The Register :</small><hr><b>Daft list names Firefox, Adobe and VMWare as top threats</b>[<i>now we know where matunga got the original thread title (dictionary def. - </i><b>daft</b><i>: 1. Mad; crazy. 2. Foolish; stupid.)</i>]<br><br><b>Bit9 trolls for publicity</b><br><br>Vulnerable applications that fail to lend themselves to updating through corporate tools are creating a security gap, according to a ludicrous list from whitelisting firm Bit9.<br><br>Bit9's list of "threats in plain sight" names Firefox at the top of a "Dirty Dozen", essentially because it's both popular and has been the subject of critical vulnerabilities over the last year. Firefox and many of the other applications listed, including iTunes and Acrobat, do have auto-updating features, though that's not obvious from what Bit9 says.<br><br>True, as the little-known Bit9 suggests, many of these applications are infrequently updated, but to go on to suggest that they are akin to more inappropriate applications such as P2P file sharing programs and the like is a bit much. Throwing VMWare and Symantec into the list is just plain silly. And when Bit9 releases its report in PDF format while implying Acrobat is an "under the radar" security threat, you really have to wonder what's going on.<br><br>"Often running outside of the IT department&#146;s knowledge or control, these applications can be difficult to detect; they create data leakage risk in endpoints that are otherwise secure; and <i>cause compliance breaches that can result in costly fines</i>," Bit9 said (our emphasis).<br><br>We've emailed the firm challenging it to come up with evidence of any organisation fined for using iTunes or Firefox, no word yet.<br><br>Bit9 said its research is designed to "highlight the need for greater visibility and control over organizations&#146; endpoints, including laptops, PCs servers and Point-of-Sale systems". End-point protection, preventing malware infection and keeping patches up to date on clients, is a key topic in information security but to overplay the significance of users installing Yahoo! on their machines contributes little to the debate.<br><br>Bit9's research <A HREF="http://www.bit9.com/files/Vulnerable_Apps_DEC_08.pdf">report (pdf, registration required)</a> list the "Dirty Dozen" applications as below (actually a list of software developers, like Apple and Symantec, not applications at all).<br><br>01. Mozilla Firefox<br>02. Adobe Flash & Acrobat<br>03. EMC VMware Player, Workstation and other products<br>04. Sun Java Runtime Environment (JRE)<br>05. Apple QuickTime, Safari & iTunes<br>06. Symantec<br>07. Trend Micro<br>08. Citrix Products<br>09. Aurigma, Lycos<br>10. Skype<br>11. Yahoo! Assistant<br>12. Microsoft Windows Live (MSN) Messenger<br><br>The list only covers Windows apps popular with consumers (so how does Citrix get in the list?), that had a critical vulnerability over the last year, and rely on end users to update, as explained in Bit9's flame-baiting press release <A HREF="http://www.bit9.com/news-events/press-release-details.php?id=102">here</a>.<hr></blockquote><br><br>matunga - fail.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21572027</guid>
<pubDate>Fri, 12 Dec 2008 15:57:12 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21572002</link>
<description><![CDATA[<A HREF="/useremail/u/0"><b>anon</b></A> : This is a gimmick by bit9 to sell their products/services.  Obviously they left off IE and other very vulnerable applications since it doesn't fit their revenue model.  Sounds like the "visit our website and we'll give you a free virus scan" gimmick isn't working for them.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21572002</guid>
<pubDate>Fri, 12 Dec 2008 15:52:48 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21571937</link>
<description><![CDATA[<A HREF="/useremail/u/466028"><b>RayW</b></A> : Yup, FF is so vulnerable.  I am ready to redo the machine that runs (was fully patched) IE because it has been infected again.  My two FF machines are still looking good, only time IE is used on them is to do Microsoft Tuesday updates.  Have to have the IE machine because of all the M$ fanboys (like the US government) who write M$ specific pages that only IE can run.<br><br>Of course, this time it may have been a Flash site that did it since this is the first time I allowed Flash to be added on that machine, never again!.  <br><small>--<br>I am not lost, I find myself every time.</small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21571937</guid>
<pubDate>Fri, 12 Dec 2008 15:42:49 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21571879</link>
<description><![CDATA[<A HREF="/useremail/u/1354951"><b>Frodo</b></A> : The Register also had an article abount this matter.<br>&raquo;<A HREF="http://www.theregister.co.uk/2008/12/12/app_threat_list/" >www.theregister.co.uk/2008/12/12&middot;&middot;&middot;at_list/</A>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21571879</guid>
<pubDate>Fri, 12 Dec 2008 15:31:23 EDT</pubDate>
</item>

<item>
<title>Re: Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21571507</link>
<description><![CDATA[<A HREF="/useremail/u/0"><b>anon</b></A> : Also don't forget to mention things like:<br>&raquo;<A HREF="/forum/r21564936-Internet-Explorer-Data-Binding-Memory-Corruption-Vuln">Internet Explorer Data Binding Memory Corruption Vuln</A><br><br>Vulnerability in Internet Explorer Could Allow Remote Code Execution<br>&raquo;<A HREF="/forum/r21563304-Microsoft-Security-Advisory-961051">Microsoft Security Advisory (961051)</A><br><br>Microsoft Internet Explorer contains an invalid pointer vulnerability in its data binding code, which can allow a remote, unauthenticated attacker to execute arbitrary code on a vulnerable system. <br>&raquo;<A HREF="http://www.kb.cert.org/vuls/id/493881" >www.kb.cert.org/vuls/id/493881</A><br><br>A stack buffer overflow vulnerability in the Microsoft Windows Server service may allow a remote, unauthenticated attacker to execute arbitrary code with SYSTEM privileges.<br>&raquo;<A HREF="http://www.kb.cert.org/vuls/id/827267" >www.kb.cert.org/vuls/id/827267</A><br><br>The WordPad Text Converter for Word 97 files included in some versions of Windows contains an unspecified error which can allow a remote, unauthenticated attacker to execute arbitrary code on a vulnerable system. <br>&raquo;<A HREF="http://www.kb.cert.org/vuls/id/926676" >www.kb.cert.org/vuls/id/926676</A><br><br>.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21571507</guid>
<pubDate>Fri, 12 Dec 2008 14:23:44 EDT</pubDate>
</item>

<item>
<title>Re: Daft list names Firefox, Adobe and VMWare as top threats</title>
<link>http://www.dslreports.com/forum/remark,21570330</link>
<description><![CDATA[<A HREF="/useremail/u/634007"><b>SUMware</b></A> : Note: matunga retitled the thread from the original "<i>Daft list names Firefox, Adobe and VMWare as top threats</i>" since my post.<br><br>More from your link:<br><br>        <blockquote><small>quote:</small><hr>Bit9, Inc., the pioneer and leader in Enterprise Application Whitelisting, unveiled its annual ranking of popular consumer applications with known security vulnerabilities.  Often running outside of the IT department&#146;s knowledge or control, these applications can be difficult to detect; they create data leakage risk in endpoints that are otherwise secure; and cause compliance breaches that can result in costly fines.  The list, published in a research brief entitled &#147;2008&#146;s Popular Applications with Critical Vulnerabilities,&#148; is designed to highlight the need for greater visibility and control over organizations&#146; endpoints, including laptops, PCs servers and Point-of-Sale systems. <br><br><b>each application on the list has the following characteristics</b>:<br><br>&#149; <b>Runs on Microsoft Windows.</b><br>&#149; Is well-known in the consumer space and frequently downloaded by individuals.<br>&#149; <b>Is not classified as malicious by enterprise IT organizations or security vendors.</b><br>&#149; Contains at least one critical vulnerability that was:<br>    o first reported in January 2008 or after,<br>    o registered in the U.S. National Institute of Standards and Technology&#146;s (NIST) official   vulnerability database at &raquo;<A HREF="http://nvd.nist.gov" >nvd.nist.gov</A>, and given a severity rating of high (between 7.0-10.0) on the Common Vulnerability Scoring System (CVSS).<br><br>[<i>"The biggies"</i>]<br><br>&#149; <b>Relies on the end user, rather than a central IT administrator, to manually patch or upgrade the software to eliminate the vulnerability, if such a patch exists.</b><br><br>&#149; <b>The application cannot be automatically and centrally updated via free Enterprise tools such as Microsoft SMS & WSUS.</b><br><br>To read the full list of applications, which includes products from Symantec, Yahoo!, Trend Micro, Sun Microsystems and more, download the research report at: &raquo;<A HREF="http://bit9.com/landing/2008vulnerableapps.php" >bit9.com/landing/2008vulnerableapps.php</A>.  There, IT managers can learn more about the application vulnerabilities, along with the benefits of using application white listing, a proactive approach to endpoint security.<hr></blockquote><br><br><small>[emphasis added]</small><br><br>It is important to notice the caveats. You'll never see MS IE in this list.<br><br>-<br><br>Bit9 is not an independent, impartial testing/reporting agency. This is a promotional and marketing tool.<br><br>&raquo;<A HREF="http://www.bit9.com/about/index.php" >www.bit9.com/about/index.php</A><br>    <blockquote><small>quote:</small><hr>Bit9 is the pioneer and leader in Enterprise Application Whitelisting. The company's patented solutions ensure only trusted and authorized applications are allowed to run on Windows computers, eliminating the risk caused by malicious, illegal and unauthorized software.<br><br>Bit9 is privately held and based in Waltham, Massachusetts.<hr></blockquote>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21570330</guid>
<pubDate>Fri, 12 Dec 2008 11:13:34 EDT</pubDate>
</item>

<item>
<title>Firefox is the Most Vulnerable Application in 2008</title>
<link>http://www.dslreports.com/forum/remark,21570285</link>
<description><![CDATA[<A HREF="/useremail/u/847301"><b>matunga</b></A> : <b>The Most Vulnerable Applications in 2008 </b><br>To help IT departments better understand the vulnerable applications running in their environment and what they can do about them, Bit9 has created a research brief listing the top 12 popular applications with known vulnerabilities for the year 2008.<br><br><b>Five of the top 12 applications with known vulnerabilities include:</b><br>- Mozilla Firefox, versions 2.x and 3.x  :)<br>- Adobe Acrobat, versions 8.1.2 and 8.1.1<br>- Microsoft Windows Live (MSN) Messenger, versions 4.7 and 5.1<br>- Apple iTunes, versions 3.2 and 3.1.2<br>- Skype, version 3.5.0.248<br><br>&raquo;<A HREF="http://www.bit9.com/landing/2008vulnerableapps.php" >www.bit9.com/landing/2008vulnerableapps.php</A><br>&raquo;<A HREF="http://www.bit9.com/news-events/press-release-details.php?id=102" >www.bit9.com/news-events/press-r&middot;&middot;&middot;p?id=102</A><div class="borderless"><TABLE WIDTH=95% align=center border=0 CELLPADDING=4"><TR><TD ALIGN=CENTER VALIGN=CENTER BGCOLOR=#FFFFFF nwrap COLSPAN=3 WIDTH=100%><A HREF="/speak/slideshow/21570285?c=1379167&ret=L2ZvcnVtL3IyMTU3MDI4NS54bWw%3D"><IMG class="apic" BORDER=0 TITLE="146921 bytes" WIDTH=600 HEIGHT=374 SRC="/r0/download/1379167.thumb600~c315b1b8150c846dd0d506b26e265e10/ffmostvulnerable.png/thumb.jpg" ALT="Click for full size"></A><br>Firefox is the most vulnerable application in 2008</TD></TABLE></div>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21570285</guid>
<pubDate>Fri, 12 Dec 2008 11:06:17 EDT</pubDate>
</item>

</channel>
</rss>
