Firefox Users Most Secure on Internet, Study Reveals


Recommended Posts

I use Firefox 3.0 with NoScript and I haven't had any problems.

burp.. Opera!

:laugh:

Scirwode

How would you know without an AV program??

I don't know, but I don't visit any shady websites on my laptop first off - it's really only for checking basic things online and doing schoolwork. Second, until my laptop starts running slow and crappy (and believe me, it's not a beast - it doesn't take much to bring it to a crawl), I could really care less - if you guys would've read my first post correctly, you'd see I said I haven't run into any problems. I didn't say that I know for sure I don't have anything wrong but it's a risk I'm willing to run considering what I do with it. I do a hell of a lot more with my desktop, on which I run IE8 (IE7 until IE8 came out, FF until IE7 came out) and I can probably count on one hand the number of times my AV has had to clean out anything over the last 5 years - none of them critical.

-Spenser

I do like Opera but you have to offer a bit more proof then "cough"

How about Secunia's report of current and historic vulnerabilities? :)

http://secunia.com/product/4932/ <== Opera 8

http://secunia.com/product/10615/ <== Opera 9

The article is mis-worded. It should read "more up-to-date with current versions", instead of "more secure".

I don't know, but I don't visit any shady websites on my laptop first off - it's really only for checking basic things online and doing schoolwork. Second, until my laptop starts running slow and crappy (and believe me, it's not a beast - it doesn't take much to bring it to a crawl), I could really care less - if you guys would've read my first post correctly, you'd see I said I haven't run into any problems. I didn't say that I know for sure I don't have anything wrong but it's a risk I'm willing to run considering what I do with it. I do a hell of a lot more with my desktop, on which I run IE8 (IE7 until IE8 came out, FF until IE7 came out) and I can probably count on one hand the number of times my AV has had to clean out anything over the last 5 years - none of them critical.

-Spenser

My Bother In Law has never used a AV program and he claims to never have had a problem, I delete all of his emails. ;)

But if you do just use it for schoolwork and not to visit any nasty site then your probably OK. I use Avast and it has never detected any virus and I also use an on line scanner about every 3 months. A great many people now believe that AV programs are a waste of resources, but I have 3 gigs of ram and I am only using one module of Avast so I am not concerned about it.

As far as the most secure goes, anything but IE.

Get a job and see if your attitude changes.

I agree. Although I prefer using IE7 over IE6, I understand why the I.T. department that I work for has chosen to stay with IE6, there is a lot of intranet and other software that only works right with IE6, and this given software is quite expensive to upgrade. They are working on it, but IE8 beta is already in the works...

:sleep:

Get a job and see if your attitude changes.

Wow, what an asinine assumption, I complain about slow software updates, so I must be a 12 year old living in a basement. No, I work at a college, my job this summer was to update our maintenance software and scripts to be Leopard-compatible. It was really easy. :rolleyes:

There is none, that is why most major corporations are not moving to Vista. Some companies are still using W2K.

We just upgraded to Win2k3 Server and XP workstations in order to run OPERA (not the browser but the hotel management system)... We were running NT4 workstations- Win98 (for the Credit Card System- and Win2000 Server.

This study has very little to do with browser security, but with secure practices among users. As a person who uses Opera 9.51, OpenDNS, PeerGuardian with extra lists for security, an extensive HOSTS file for security, all on a limited user account of an XP machine that scores ~74 on the CIS XP Benchmark behind a software and hardware firewall, I am most certainly not just "slightly more" secure than an Internet Explorer 6 user on an unsecured XP on an administrator account hooked directly to a DSL modem. This article doesn't address browser security—which is a quite different metric from user ineptitude.

This is stupid. I shop and pay bills using IE7 for months when even I have Firefox. It's just IE is more compatable than Firefox on most websites out there (why you need IEtab extenstion when IE don't need anything).

Only because websites don't follow standards and have such bad workarounds applied so they only work on IE.

Only because websites don't follow standards and have such bad workarounds applied so they only work on IE.

That's strange... I shop and pay bills online and I work only in Firefox, haven't run into any problems. The only thing I use IETab for is for Windows Update and Microsoft Exchange Web Based (which will work in ff, just not as well).

And of course using Secunia is just as incorrect, of the 4 major browsers only Mozilla fully discloses all vulnerabilities.

There was even one time where Opera ASA didn't even disclose when it has fixed a security hole in it's changelog.

More secure my ass. :laugh:

Anyways, I'm not surprised by this news.

The partial patch system in Firefox is quite good and really pretty amazing.

And as far as business go, they could at least restrict IE6 usage to their intranets/VPNs and keep that steaming pile off of the internet-wild.

Edited by shakey_snake

Opera waits for security reporters to make their discoveries public before announcing a fix so the reporters can be properly credited (links to the reporter's site, thus Google PR boost). Typically, vendors and reporters publish around the same time so there's typically no issue, but a wrench was thrown in the plans a single time because Opera had previously promised a build for Christmas to their community but the reporter was on Christmas vacation and unable to make his discovery known. Opera decided to deliver on its promise to the community by releasing Opera 9.10 in a way that would allow them to properly credit the reporter at a later time, after the reporter came back from Christmas vacation.

That's called professional courtesy, Shakey.

That's called professional courtesy, Shakey.

Whatever the reasoning, it's an unprofessional non-courtesy to their users. :whistle:

Anyways, I've hope they've gotten out of the business of promising their users releases by x date.

No need to put yourself between a rock and a hard place.

Apparently, you know nothing of the software industry. Those who test your software for vulnerabilities choose to remain silent to the public at large so you have an opportunity to fix the problem before it's known by malicious exploiters. This knowledge exclusivity is a privilege, not a right, and your privilege can be easily revoked. If you give those people the proverbial middle finger, they'll be tempted toward revenge the next time they find a security issue, which increases the odds of malicious exploiters being informed about the problem, thus increasing the odds of screwing over your customers. It was courteous to the users to not screw over the security reporter.

And your idea of courtesy is baffling. You think it would be more courteous to delay the release with security fixes so the users could have a more complete changelog when the software's released and less courteous to offer them the security fixes faster? What twisted idea of coutesy do you have?

As for promising to make releases, they didn't. I used that phraseology to see if you'd correct me. Why? Because anyone who knew actually researched the undocumented security fix incident you mentioned would know there was no promise because Opera never makes promises about releases and thus you would've corrected me about being factually incorrect in proposing such an explanation. (They were hoping for a release, but never promised one. Which you can easily verify yourself.) You bit the troll bait, Shakey.

Apparently, you know nothing of the software industry.
I do not know how you can possibly know enough about me to make such a claim. Perhaps you know where I sleep too? or what I'm wearing right now? :rolleyes:
Those who test your software for vulnerabilities choose to remain silent to the public at large so you have an opportunity to fix the problem before it's known by malicious exploiters. This knowledge exclusivity is a privilege, not a right, and your privilege can be easily revoked. If you give those people the proverbial middle finger, they'll be tempted toward revenge the next time they find a security issue, which increases the odds of malicious exploiters being informed about the problem, thus increasing the odds of screwing over your customers. It was courteous to the users to not screw over the security reporter.
Seriously, a simple: "jpeg vulnerability fixed more details to follow..." would have been more that sufficient. However anything was omitted, and that is a problem.
And your idea of courtesy is baffling. You think it would be more courteous to delay the release with security fixes so the users could have a more complete changelog when the software's released and less courteous to offer them the security fixes faster? What twisted idea of coutesy do you have?
Humm... I never said that....
As for promising to make releases, they didn't. I used that phraseology to see if you'd correct me. Why? Because anyone who knew actually researched the undocumented security fix incident you mentioned would know there was no promise because Opera never makes promises about releases and thus you would've corrected me about being factually incorrect in proposing such an explanation. (They were hoping for a release, but never promised one. Which you can easily verify yourself.) You bit the troll bait, Shakey.
Yeah, I didn't know about something that didn't happen but I assumed you were not lying to me. I guess that makes me a troll. :rolleyes: Great logic.

This is utterly ridiculous. All you've really done is established that you are not a reliable source of information.

I'm going out of town for the week , so don't expect a reply to whatever fanboy garbage you dream up next. And even if I was going to be around, I wouldn't expect me replying to you ever again when it come to browsers. Clearly a mistake.

Anyone who wants to read about what we are talking about can read about it here:

http://www.heise-online.co.uk/security/Ope...et--/news/83279

If you knew anything about the development process of Opera Software, you would've corrected me. You know nothing about Opera's development process, thus you have no knowledgable basis on which to put forward implications of Opera Software's security policies. And I didn't call you a troll because you took the bait, I said I put the bait there because I identified your trolling before then—feel free to look at your strawman picture again, I think you missed something. The changelog they posted was sufficient. People knew of stability, accessibility, security, and performance improvements and more. Users were given more than enough incentive to upgrade.

You're exaggerating a small hiccup in the development process as if it were a huge security concern when it's not. Where's your aspersions against Mozilla's security policies, considering the many security vulnerabilities they didn't bother to fix in 2.x after several years of being known and problems beginning to accumulate in 3.x as well? Where's your aspersions against their security policies? That would only be fair, wouldn't it, Shakey?

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • "just $100 per TB"? Just? Are we trying to make this seem like the new normal? Kinda weird to make it sound like that is not a ridiculously expensive asking price.
    • The reviews you refer to mean nothing. Where there is no journalism there is no reason to call the gaming media's opinion pieces "reviews". For GP games there is indeed a metric for success - increasing subscriptions. Which turns in revenue. The only circumstance in which subs do not rise when great is being released is a Game Pass system where the company is close to fully saturated with customers in a subscription. However, in that case as the theory goes you spend aplenty in all kind of games - from shady live service cash cows and customer offending agitprop crap in purple colours to robust and entertaining single player games. And keep a solid level of profitability. Ignoring the simply innocuous but mid games MGS has released primarily of the second kind.
    • Report: Microsoft to use AWS to help GitHub deal with a major surge in demand by Pradeep Viswanathan Thanks to the surge of coding AI agents, GitHub's usage has skyrocketed over the past 12 months. To meet this demand, GitHub started with a plan in October 2025 to increase capacity by 10x. However, by early this year, the company realized that it needed 30x scale. This rapid growth has caused severe strain on the platform's reliability, resulting in several small outages over the past few months. In April, GitHub published a long blog post explaining the steps it is taking to resolve these reliability issues. In the post, the company also confirmed that it is working toward a multi-cloud architecture for better resilience. Today, Business Insider reported that GitHub is turning to Amazon Web Services to help deal with a major surge in AI-driven coding activity. It is important to note that GitHub is still in the process of moving completely to the Azure cloud. The current plan is to move the platform fully to Azure by 2027 so that it can scale better as per developer demand. Therefore, the current decision to utilize AWS might be part of a short-term plan to meet immediate demand. A Microsoft spokesperson confirmed that GitHub is using multiple cloud providers with the following statement: For Microsoft, the decision highlights the operational pressure behind the AI boom. GitHub has to stay reliable for developers at a time when rivals such as Codex, Cursor, Claude Code, and other AI coding tools are gaining attention. And the decision to use AWS for computing capacity seems practical given the circumstances.
    • It's growing on me, however, your right, it make better usability sense if the tabs were bellow the address bar.
    • Qwen 3.6 is better value per dollar, and you can run it locally for free.
  • Recent Achievements

    • Collaborator
      vjlex earned a badge
      Collaborator
    • Reacting Well
      Dys Topia earned a badge
      Reacting Well
    • Conversation Starter
      NovaEdgeX earned a badge
      Conversation Starter
    • One Year In
      Console General earned a badge
      One Year In
    • Week One Done
      Twozo Technologies earned a badge
      Week One Done
  • Popular Contributors

    1. 1
      +primortal
      517
    2. 2
      +Edouard
      182
    3. 3
      PsYcHoKiLLa
      106
    4. 4
      Steven P.
      88
    5. 5
      ATLien_0
      68
  • Tell a friend

    Love Neowin? Tell a friend!