Live data from Hacker News

Viewing profile — dveditz_

dveditz_

HN member
Joined
Wed, Jun 18, 2014, 10:37 PM UTC
HN karma
24
Public activity
17 items

About dveditz_

No profile information was provided.

Recent public activity

  1. comment
    Comment #44389790

    The "exposing information about..." bit in the Mozilla statement is fingerprinting/privacy argument like WebKit's

  2. comment
    Comment #44381438

    Removed MNG and started work on APNG 20 years ago! https://bugzilla.mozilla.org/show_bug.cgi?id=257197

  3. comment
    Comment #44381167

    It supports JavaScript when used as a document, but when used as an "image" by a browser (IMG tag, CSS features) JavaScript and the loading of external resources are disabled.

  4. comment
    Comment #44381140

    The capabilities are already expanded in most common implementations. This update is largely blessing those features as officially "standard".

  5. comment
    Comment #41936913

    It's not a "goal", it's a requirement (right there in the name!). Failing to comply to a government requirement subjects you to the associated penalties. They haven't said which re…

  6. comment
    Comment #31521096

    Tails has updated their advisory to remove that statement: https://tails.boum.org/security/prototype_pollution/index.en...

  7. comment
    Comment #31512261

    We are not aware of any such thing. As rebelwebmaster noted, when we know that we put it in our advisory. Clearly the vulnerabilities are exploitable as demonstrated by Manfred Pau…

  8. comment
    Comment #29114143

    Did the execs get raises after the layoffs? About half the ones that were at Mozilla at that time are gone now.

  9. comment
    Comment #29114075

    Or you just turn it off in the normal preference UI and trust that California's AG will sue Mozilla into oblivion if they weren't honoring the CCPA. https://blog.mozilla.org/netpol…

  10. comment
    Comment #29113933

    Those are in no way substitutes for each other -- you have to do both. People are not able to self-report accurate measurement data, and telemetry data can't tell you anything abou…

  11. comment
    Comment #20707132

    How to know when unrelated domains are actually part of the same site is a hard problem. The Public-suffix List approach works okay-ish for cookies, but no one's really happy enoug…

  12. comment
    Comment #19824837

    Are you using an Extended Support Release (ESR)? That's expected then.

  13. comment
    Comment #15707570

    Mozilla has never sponsored the Pwn2Own contest.

  14. comment
    Comment #10099656

    You can't compare counts of published vulnerabilities when organizations have vastly different standards of publication. Open source projects (e.g. Firefox, chromium) publish every…

  15. comment
    Comment #10054648

    The target is not illegal malware which, as you say, would do anything. But there's a vast amount of detrimental foistware doing malicious things (e.g. injecting ads, tracking) und…

  16. comment
  17. comment
    Comment #10023002

    39.0.1 and 39.0.2 fixed serious regressions in Firefox for Android in some configurations. They weren't security fixes.