Live data from Hacker News

Firefox Monitor

monitor.firefox.com

221–227 of 227 posts

Re: Firefox Monitor

#221

Earlier quoted context omitted.

The + feature long predates gmail. Here’s an example description from the 1990s http://www.faqs.org/faqs/mail/addressing/index.html

I think StavrosK meant Fastmail has the service@user.yourdomain.com syntax because "there are plenty of sites that don't accept a +", not because Gmail supports the user+service@gmail.com syntax.

That's what I meant, sorry and thank you.

Re: Firefox Monitor

#222
post #47

It would be helpful to include a link to the services somewhere. I only figured out this was for apollo.io because of a comment on HN: https://monitor.firefox.com/breach-details/Apollo

I agree, it would be helpful. At least Firefox Monitor does give you a way to find more details, by linking to https://www.haveibeenpwned.com/. If you click from that page to https://haveibeenpwned.com/PwnedWebsites and search the page for a company name, you will find more details about it.

Re: Firefox Monitor

#224
post #55
post #39

My email appears in six breaches. Only one of the companies I recognize. I have never done business with the other five. This pisses me off. Not that the data was stolen -- these things happen. It pisses me off that my data was shared with third parties without my knowledge or consent. And no, a paragraph buried in the basement of a privacy policy does not constitute informed consent. This system would be more useful…

> I want to know who betrayed me. You can run your own email server (or have a company host a private domain for you), set up a catch-all address that only you know, then use a different email address for every site you sign up to. That way you can find out this sort of information. Using this technique, I know for example that spammers obtained the address I signed up to Stack Overflow with. The email is not shown o…

You can't rule out that it wasn't publicly shown but you say that "evidence suggests" that they sold your address to spammers.

Do you have any evidence at all?

Re: Firefox Monitor

#225

Earlier quoted context omitted.

Well with the API it’s pretty easy to test your password. You just have to hash it, send the 5 first characters and it returns the list of the hashes starting with those 5 characters. You then just check.

It's easy if you know what you're doing. I don't think my mother could do this.

You are completely right, but I was answering to parent post.

I don’t think your mother, or mine, can ask herself this question of trusting the JavaScript or not :-)

Re: Firefox Monitor

#226

Disclaimer: Firefox Monitor dev here. Note: We just released a "V2" of the site that allows you to add multiple email addresses to monitor, and (then) to have all your breach alerts sent to your single primary email address.

Oh the irony if my email becomes breached for using Mozilla's service. In all seriousness I have faith in you guys for the most part (storing my bookmarks and sharing the browsing sessions across browsers).

The sync data is said to be locally en/de-crypted. The same couldn't be true of the monitored addresses - a hash might be possible but then the alert wouldn't be certain merely probable and couldn't be reasonably sent.

Re: Firefox Monitor

#227

Earlier quoted context omitted.

I do not think you understand the meaning of the word "trust", you may want to look it up. Or maybe you were born after firefox deactivated all add-ons by surprise and accident? Maybe you haven't thought through what an 'app store' really is? Whatever the case, don't bother interacting with me you are so far behind I know nothing you have to say will be of any value on the topics of 'trust', 'corporation' or 'privacy…

I’m not the person you responded to, but I found your comment needlessly imflammatory. In regards to privacy, they aren’t brilliant, but they are probably the best of a bad bunch for most users. Chrome is very anti privacy, as is edge. Android is anti privacy. By elimating 90% of the market in this way, it’s fair to say the only remaining big players in either field are better for privacy than the standard.

You can't point to criminals in order to prove yourself good by comparison.

You can't dismiss the mountain of mozilla's untrustworthy sketch bs without offering alternative suggestions unless your intention is simply advertising to use mozilla because it's the least worst.

fanboys set the bar soooo low nowadays. I find your comment needlessly dismissive of the relevant facts, perspective and any meaningful contribution to the discussion.

You haven't even begun to see the beginnings of inflammatory so please adjust your sensitivity meter, this is the internet.

Post reply on HN