Mozilla Foundationã¯6æ18æ¥ï¼ç¾å°æéï¼ãWebãã©ã¦ã¶ãFirefoxãã®ã»ãã¥ãªãã£ã¢ãããã¼ããFirefox 67.0.3ãã¨ãFirefox ESR 60.7.1ãããªãªã¼ã¹ãããå±éºåº¦ãæé«ã®ãCriticalãã®é大ãªèå¼±æ§ã«å¯¾å¦ããããã®èå¼±æ§ãæªç¨ããæ»æãæ¢ã«ç¢ºèªããã¨ãã¦ããã ãã®èå¼±æ§ãæªç¨ãããã¨ãã¦ã¼ã¶ã¼ãæªæããWebãã¼ã¸ã«ã¢ã¯ã»ã¹ããã¨æ»æè ã«PCãä¹ã£åãããæãããããç±³å½åå®å ¨ä¿éçãå ¬å¼ãµã¤ãã§ã¢ãããã¼ããå¼ã³æãã¦ããã Mozillaã¯Security Advisoryã§ãArray.popã®åé¡ã«ãããJavaScriptãæä½ããéã«èå¼±æ§ãçºçããå¯è½æ§ãããããã®èå¼±æ§ãæªç¨ããã¨ã·ã¹ãã ã®ã¯ã©ãã·ã¥ãå¯è½ãæ¢ã«ãã®èå¼±æ§ãæªç¨ããæ¨çåæ»æã確èªãã¦ãããã¨èª¬æãã¦ããã ãã®èå¼±æ§ã¯ãç±³Googleã®Goog
å人ã§EV SSL証ææ¸ã欲ãã話 - Speaker Deckãèªãã§é©ãããã ãã©ããã¤ã®éã«ãFirefoxã«ã¯EVSSL証ææ¸ã®ã«ã¼ãèªè¨¼å±ããã¼ãã³ã¼ãã£ã³ã°ããã¦ããããæ¸ãæããã«ã¯ãã©ã¦ã¶ããã«ããç´ãå¿ è¦ãããããããï¼ã¨ããããªãã«ããã¦ã追å ãã証ææ¸ã§ã¢ãã¬ã¹ãã¼ãç·è²ã«ãªããªãã£ãã¿ãããä½ã足ããªãã®ããªï¼ï¼ã«ã¼ã証ææ¸ãã®ãã®ã¯å¾ãã足ããã®ã ãæ¢ãã¦ãã¼ãã³ã¼ãããçç±ã¯æ³åã§ãããã«ã¼ã証ææ¸ãªãã¦å¾ããä¾µå ¥è ãªããã«ã¦ã§ã¢ãç°¡åã«è¶³ããã¨ãã§ããããç¾ã«ãããã£ãæ»æã¯ããã¾ã§è¡ããã¦ããããã ã ã¤ãã§ã«Firefoxãè¿ã DHCPã§éã£ã¦ããDNSãä¿¡ç¨ããã®ãæ¢ãã¦ãDNS over HTTPSã§Cloudflareã«åãåãããã¨ããããããã¾ãDNSå±¥æ´ãç£è¦ããå½ã ã¨ããæ¥æ¬ãå«ãã¦Webæ¤é²ã®ããã«DNSãããã£ã¦ãå½ããã£ã¦ããããã£ãå½±
éä¿¡ã®å®å ¨ãä¿è¨¼ãããããã³ã«ãHTTPSããæ¡ç¨ããã¦ããURLã®è¡¨è¨ãæ£ãããã°ããããæ£è¦ãµã¤ãã ã¨èªèããã®ã¯èªç¶ãªãã¨ã§ããããã©ã¦ã¶ã®URL表è¨ä¸ããã¯è¦æããªããã£ãã·ã³ã°è©æ¬ºã®å±éºæ§ãææããã¦ãã¾ãããã®ãã£ãã·ã³ã°è©æ¬ºã¯ãhomograph attack(ãã¢ã°ã©ãæ»æ)ããé²åãããææ³ãç¨ãã¦ããããã©ã¦ã¶ã«å å¨ããèå¼±æ§ãçªãããã®ã§ã人éãç»é¢è¡¨ç¤ºããè©æ¬ºãµã¤ãã§ãããã¨ãè¦æããã¨ã¯ä¸å¯è½ãç¾å®åé¡ã¨ãã¦ããã©ã¦ã¶å´ã®å¯¾å¿ãå¾ ã¤ãã対çæ³ã¯ãªããã¨è¨ããç¶æ³ã§ãã This Phishing Attack is Almost Impossible to Detect On Chrome, Firefox and Opera http://thehackernews.com/2017/04/unicode-Punycode-phishing-attack.htm
æ²è¼å½åããFirefoxããã©ã°ã¤ã³å»æ¢ã¸ãã¨ããã¿ã¤ãã«ã®ä¸ãããã©ã°ã¤ã³ãåé¤ããæ¹åã§ä½æ¥ãé²ãã¦ãããã¨è¨è¿°ãã¦ããã¾ãããã誤ãã§ãã£ãããä¿®æ£ãããã¾ããããè¿·æããããããèªè ã®çæ§ãªãã³ã«é¢ä¿åä½ã«æ·±ããè©«ã³ç³ãä¸ãã¾ãã Mozillaã¯ãMozilla Security Blog - Update on Plugin Activationãã«ããã¦ãã»ãã¥ãªãã£å¼·åãç®çã¨ãã¦ãFirefoxã®ãã©ã°ã¤ã³(ã¡ãã£ã¢ã®åçãªã©ã§å¿ è¦ã«ãªãã½ããã¦ã§ã¢ã®è¿½å æ©è½)ä¸ä½¿ç¨ãå¼·åããæ¹åã§ä½æ¥ãé²ãã¦ãããã¨ãä¼ããã Firefoxã§ã¯ä»¥åãã対å¿ãé²ãã¦ãããç¾å¨ã®ãã¼ã¸ã§ã³ã§ã¯ãã©ã°ã¤ã³ã¯ããã©ã«ãã§ç¡å¹ããã©ã°ã¤ã³ã®ä½¿ç¨ãå¿ è¦ã«ãªããã¼ã¸ãéãã¨ãã©ã°ã¤ã³ãæå¹ã«ãããã©ããããããããclick-to-playãã¨ããæ©è½ãåä½ããä»çµã¿ã«ãªã£ã¦ãããè¨äºã§ã¯Web
Firefoxã¦ã¼ã¶ã¼ãªã[AutoCopy]ã[Fasterfox Lite]ãªã©ã¨ãã£ãæåãã¤äººæ°ã¢ããªã³ã®ãã¨ã¯ãåããã¨æãã¾ãã å®ã¯ãããã¢ããªã³ã¯ãã¤ãããææè ãå¤æ´ããã¦ãããç¾å¨ã®ææè ã¯ã¢ããªã³å©ç¨è ã®ãã©ã¦ã¸ã³ã°æ å ±ãåéãã¦ããã¨ããäºå®ãå¤æãã¦ãã¾ãã ç¾ææè ã¯[wips]ã¨ããã¦ã§ãåæä¼æ¥ã¨ãªã£ã¦ããã[AutoCopy]ã[Fasterfox Lite]å©ç¨è ã¯ããã®ä¼æ¥ã«OSæ å ±ããã©ã¦ã¸ã³ã°ã«é¢ããå±¥æ´ã訪åæ¥æãæ»å¨æéãªã©ãéä¿¡ãããã¨ããæããããã¨ã«ãªã£ã¦ãã¾ãã ãããæ å ±åéé¢ãã¦ã¯[wips]ã«æè¨ããã¦ã¯ãã¾ãããAMOã«ã¯ãªããæ å ±ã¯è¨è¼ããã¦ããããã¦ã¼ã¶ã¼ã¯ã¢ããªã³ææè ãå¤ãã£ããã¨ããã©ã¤ãã·ã¼æ å ±ãåãæµãã«ãªã£ã¦ãããã¨ããæ°ãä»ããªããããªäºæ ã¨ãªã£ã¦ãã¾ãã ãã®ä»¶ã«é¢ãã¦ã¯ãã§ã«åã¢ããªã³ã®ã¬ãã¥ã¼æ¬ããå½å å¤
Chromeï¼Firefoxï¼é»åã¡ã¼ã«ãæå·åãã¦ãã¾ããï¼ãããããã©ã¤ãã·ã¼ä¸ã®æ¸å¿µãæ±ãã¦ããã®ãªãããMailvelopeããè¦ãã¦ããã¦æã¯ãªãã§ãï¼ ã¯ãªãã¯ããã²ã¨æéãå ããã ãã§ãã¡ã¼ã«ã®æå·åã§ããç¥ããããPGPï¼Pretty Good Privacyï¼ãã¨ããæå·åããã°ã©ã ãç¨ãã¦ãç§å¯ã®ã¡ãã»ã¼ã¸ãããåãã§ãã¾ããä»çµã¿ã説æãã¾ããã¾ãåãã«ãããªãã¯ã¨ãã©ã¤ãã¼ãã®2ã¤ã®éµï¼ãã¼ï¼ãä½ãã¾ãããããªãã¯ã»ãã¼ããã¡ã¼ã«äº¤æããã人å士ã§å ±æãã¦ãã ãããã¡ã¼ã«ãéä¿¡ããã«ã¯ãã¡ã¼ã«ãéä¿¡ããç¸æã®å ¬ééµãã使ç¨ãã¦æå·åããåä¿¡ããå´ã¯ãèªåã®ãã©ã¤ãã¼ãã»ãã¼ï¼ãã¹ã¯ã¼ãï¼ãã¹ãã¬ã¼ãºï¼ãã§å¾©å·ãè¡ãã¾ããã¤ã¾ãããã®ç§å¯ã®éµããªããã°ã¡ãã»ã¼ã¸æ¬æã解èªã§ããªãããã§ãããå ±ééµæå·æ¹å¼ãã¨ãå ¬ééµæå·æ¹å¼ããçµã¿åããããã¨ã«ãã£ã¦ãäºéã«ã¬ã¼ãã
Firefoxï¼å æ¥ãããã©ã¤ãã·ã¼ãä¿è·ããªããããããµã¼ãã£ã³ã楽ããæ¹æ³ãããç´¹ä»ããã°ããã§ãããããã§ãã¾ã åä¿¡åçã§ãããã¾ã§åºã¾ã£ã¦ããåé¡ã«å¯¾ãã¦ç¢ºä¿¡ãæã¦ãªãã¨ããã®ã§ããã°ãFirefoxã®ã¢ããªã³ãCollusionãã使ãã°ããã©ããã³ã°ã¯ããã¼ãªã©ã使ã£ã¦ãèªåã追跡ããã¦ããæ§åããªã¢ã«ã¿ã¤ã ã§è¦ããã¨ãã§ãã¾ãã Collusionã¯ã訪åãããµã¤ãã®ãã©ããã³ã°ã¯ããã¼ãã¹ã¯ãªããã§èªåã追跡ããã¦ããæ§åããã¤ã³ã¿ã©ã¯ãã£ããªãããã§å¯è¦åãã¦ããã¾ããCollusionã¯ã¤ã³ã¹ãã¼ã«ãã¦ãåèµ·åã®å¿ è¦ã¯ããã¾ãããä¸æ¦ã¤ã³ã¹ãã¼ã«ããããã¢ããªã³ãã¿ããéãã¦ããã©ã¦ãºãã¦ããWebãµã¤ãããã©ã®ããã«è¿½è·¡ããã¦ãããã¨ããããããæãå§ãã¾ãã ã»ã¨ãã©ã®Webãµã¤ãããåºåãçµ±è¨ãã½ã¼ã·ã£ã«ã¡ãã£ã¢ã§ãã©ããã³ã°ã¯ããã¼ã®ãããªãã®ã使ã£ã¦ããã®ãå
ã¦ã§ããµã¼ãã¹ã«ãã£ã¦ã¯ãã¢ã¯ã»ã¹ããã¦ã¼ã¶ã¼ã®IPã¢ãã¬ã¹ããå½ãªã©ã®æ å ±ãåå¾ãããã®ã¦ã¼ã¶ã¼ã«é©ãããã¼ã¸ã表示ããããã¢ã¯ã»ã¹ãå¶éããããããã¨ãããã¾ãã ã¤ã³ã¿ã¼ãããã©ã¸ãªãµã¼ãã¹ã®ãPandoraããªã©ã¯æ¥æ¬ããã®ã¢ã¯ã»ã¹ãã§ããªããã¨ãªã©ãããç¥ããã¦ãã¾ããã ã¾ããä¸é¨ã®æµ·å¤ãã©ã³ãç´è²©ãµã¤ãã§ã¯ãç±³å½æ¬åºã§å®ãè²·ãç©ããããã¨ãã¦ã¢ã¯ã»ã¹ãã¦ãæ¥æ¬æ³äººã®ãµã¤ãã«ãªãã¤ã¬ã¯ãããã¦ãã¾ããæ¥æ¬ã®ä¾¡æ ¼ã§ããè³¼å ¥ãã§ããªãããã«ãªã£ã¦ãããããã¾ãã ãããããã®ãããªå¦çãããã¦ã使ããããµã¼ãã¹ãããã§ããããããå¾ã«è²·ãç©ãããããã¨ãããã§ãããã Firefoxã¦ã¼ã¶ã¼ãªãããã®ãããªIPã«ããå¶éãåé¿ãããããªãã¨ã¯ãªãã§ããªãä½æ¥ã ã¨æãã¾ãããè¨å®ããããããã£ããããµã¼ããæ¢ãããããã®ãé¢åã ã£ãããã¾ããã Firefoxã«ãStealthyãã¨
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}