Firefox Users Most Secure on Internet, Study Reveals


Recommended Posts

Firefox Users Most Secure on Internet, Study Reveals

Mozilla Firefox fans might rest a little easier these days after a study released Tuesday revealed that its users are most secure on the Internet.

The study "Understanding the Web browser threat: Examination of vulnerable online Web browser populations and the "insecurity iceberg," was a collaborative effort conducted by researchers at The Swiss Federal Institute of Technology, Google and IBM (NYSE:IBM) Internet Security Services. The research offers a comprehensive analysis of Web browsers, particularly in the area of security. The study's aim was to analyze Web browser preference and behavior for people using the Internet.

Altogether, the study found that less than 60 percent (59.1) of people use up-to-date, fully patched Web browsers. Failure update browsers exponentially increases the chance for remote attacks executed by hackers, the study found.

In recent years, the Web has become the vehicle for malicious attacks, which have enabled cyber criminals to execute code that shuts down a system or takes complete control of a user's PC. Unlike years past, hackers now are creating new malware specifically to gain access to user's personal and financial information, with the aim of committing identity theft or selling it on the black market.

The study concluded that of the hundreds of millions of users accessing Web browsers worldwide, more than 600 million were at risk of attack for not running the latest, most secure Web browser version as of June 2008.

Firefox users were far and away the most likely to use the latest version, with an overwhelming 83.3 percent running an updated browser on any given day. However, despite Firefox's single click integrate auto-update functionality, 16.7 percent of Firefox users still continue access the Web with an outdated version of the browser, researchers said.

The study also revealed that the majority of Safari users (65.3) percent were likely to use the latest version of the browser between December 2007 and June 2008, after Safari version 3 became available.

Meanwhile, Microsoft (NSDQ:MSFT)'s Internet Explorer users ranked last in terms of safe browsing. Between January 2007 and June 2008, less than half of IE users -- 47.6 percent -- were running the most secure browser version during the same time period.

Opera ranked slightly higher than IE, with about 56 percent of users who said that they have applied the latest version of the browser to their computer. Of the four browsers surveyed, Opera ranked last in popularity, with a just 11 million users that comprise .8 percent of the marketshare.

Altogether, Safari has captured only 48 million users, equaling about 3.4 percent of the market -- a user base far surpassed by Firefox's 227 million and IE's 1.1 billion, encompassing 16.1 percent and 78.3 percent of the market respectively.

Researchers initiated the study to highlight the growing global problem of Web exploitation and the increasing number of users who log onto various Web browsers.

Among other things, the researchers aimed to address the growing number of threats launched by attackers in recent years that exploit Web vulnerabilities with stealthy and silent attacks for financial gain.

"Profit motivated cyber"criminals have rapidly adopted Web browser exploitation as a key vector for malware installation," researchers state. "As popularity of this attack vector has blossomed, there have been frequent reports of hundreds of thousands of Web sites succumbing to mass-defacement, where the defacement often consists of an embedded iFrame. These iFrames typically include content from servers hosting malicious JavaScript code designed to exploit vulnerabilities accessible through the user's Web browser and subsequently to initiate a drive-by malware download."

The researchers also stated that attacks have become so sophisticated that they are able to spread malicious code to numerous users by infecting "legitimate" high trafficked and popular Web sites, underscoring the need for users to apply the latest browser patches and updates when surfing the Internet.

Researchers also advised that in light of a more dangerous security landscape and the barrage of Trojans, botnets and other malware, users need to use the most recent version of the installed software and immediately apply the latest patches as they become available.

"With today's hostile Intent and drive-by download attack vectors, failure to apply patches promptly or missing them entirely is a recipe for disaster; exposing the host to infection and possibly subsequent data disclosure or loss," they said.

Source: Channel Web

And then there are businesses that willingly sacrifice security updates to stay with a "known version" of software. Its a shame how many people are stuck with IE6 because their IT departments are too lazy to push out IE7 with the latest updates. :/

Its a shame how many people are stuck with IE6 because their IT departments are too lazy to push out IE7 with the latest updates. :/

It's not because they're lazy. The company may have software that doesn't work well with IE7, or an internal web page/service that isn't compatible.

And it's no wonder why FF user are most secure. The browser urges you to update whenever an update is available.

It's not because they're lazy. The company may have software that doesn't work well with IE7, or an internal web page/service that isn't compatible.

These developers have had since mid 2005, when IE7 was first released for testing purposes, to get things working properly. They're clearly aren't being paid enough...or are being paid too much for what they do.

And then there are businesses that willingly sacrifice security updates to stay with a "known version" of software. Its a shame how many people are stuck with IE6 because their IT departments are too lazy to push out IE7 with the latest updates. :/

So the businesses should pay to upgrade their software that was developed for IE6, when IE6 is still freely available and updated? Where's the ROI?

These developers have had since mid 2005, when IE7 was first released for testing purposes, to get things working properly. They're clearly aren't being paid enough...or are being paid too much for what they do.

Get a job and see if your attitude changes.

Where are the Opera fanboys? :rofl:

So the businesses should pay to upgrade their software that was developed for IE6, when IE6 is still freely available and updated? Where's the ROI?

There is none, that is why most major corporations are not moving to Vista. Some companies are still using W2K.

These developers have had since mid 2005, when IE7 was first released for testing purposes, to get things working properly. They're clearly aren't being paid enough...or are being paid too much for what they do.

Some have software since the 90's still. It's not that "easy" for all companies to adapt to new technologies.

Cool. Like x-byte says the browser asks you if you want to update. Whereas with Internet Explorer you could have IE3 and they wouldn't care.

Then what Is?

Read this

www.populartechnology.net/2006/01/opera-is-faster-more-secure-and-more.html

Cool. Like x-byte says the browser asks you if you want to update. Whereas with Internet Explorer you could have IE3 and they wouldn't care.

Read this

www.populartechnology.net/2006/01/opera-is-faster-more-secure-and-more.html

The blog you were looking for was not found.

That is where your link sent me.

Meh. I've been running IE7 on my XP Laptop without running AV for months now and haven't run into any problems whatsoever.

-Spenser

Not every virus is going to come out and announce itself, "Im here! oh snap lets do some damage".

By scanning with online websites. By monitoring your computer. An AV program isn't the only way to know you're not infected.

Online scanners cant prevent stuff from getting in, they only detect and remove.

burp.. Opera!

yea... funny?

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Yeah, this is absolutely nothing new and EA have done it before. Burnout Paradise, released in 2008, had dynamic advertising billboards that were updated via the internet and targeted people based on location and what EA knew about them from their profile. It was particularly notable for the fact that the Obama presidential campaign ran ads in the game, in an attempt to reach a younger audience who didn't watch broadcast TV any more. It was by no means the first though. Battlefield 2142 from 2006 had the same thing. In fact, Neowin wrote a story about it back then. https://www.neowin.net/news/ba...-in-game-ads-clarification/
    • This is obviously aimed at the education where Apple has lost so much ground to Chromebooks in the last few years, but unless they come up with a comparable management system for education why would anyone switch back?
    • Here's how we arrived at that claim: Note that this is just Play Store downloads. The app is also available on the Galaxy App Store
    • Google Play states the app had more than 50 million downloads. What other metric do you suggest should be used?
    • MSN defined our generation in some ways, kind of like Snapchat and TikTok have done for future generations. I have great memories of the MSN era in the late 90s / early 2000s. In the UK everyone seemed to come home from School and go on MSN for the evening. We didn't really have mobile phones then, so other than going and knocking on your friends door it was a totally new way of interacting with people. I also loved how I could talk to people I’d met playing online games from around the world. Inviting people to NetMeeting and messing about with the shared white board and webcams was pretty fun, even if webcams only ran at a couple of fps over dial-up. All the random things you could do with MsgPlus! were really fun - I suspect that made a few people jump with /shello randomly blasting Mr Hankey out their speakers! Maybe I’m just nostalgic, however I do feel the internet and computers were more fun back then.
  • Recent Achievements

    • One Year In
      Console General earned a badge
      One Year In
    • One Year In
      Twozo Technologies earned a badge
      One Year In
    • One Month Later
      Twozo Technologies earned a badge
      One Month Later
    • Week One Done
      Twozo Technologies earned a badge
      Week One Done
    • Veteran
      branfont went up a rank
      Veteran
  • Popular Contributors

    1. 1
      +primortal
      533
    2. 2
      +Edouard
      206
    3. 3
      PsYcHoKiLLa
      131
    4. 4
      Steven P.
      90
    5. 5
      neufuse
      75
  • Tell a friend

    Love Neowin? Tell a friend!