Mozilla developers are working on a new Firefox feature that will block the automated display of plug-in-based content like Flash videos, Java applets or PDF files, and will protect users from attacks that exploit vulnerabilities in browser plug-ins to install malware on their computers. . Known as "click to play," this feature has been present in the popular NoScript Firefox security extension for many years, as well as in other browsers like Google Chrome and Opera. The link for this article located at Network World is no longer available. . The latest Chrome update introduces measures to prevent automatic content rendering, boosting user security against harmful extensions.. Firefox, Browser Security, Click-to-Play, NoScript, Plugin Exploits. . Alex
WordPress just announced that the source code of three plugins for its popular blog-hosting software was maliciously modified.. Plugins consist of add-in modules which you install on your WordPress server in order to implement additional functionality, instead of writing all the needed code yourself. Where you might use a DLL with a Windows program - for example, to add a feature such as SSL support or an edit control into an existing application - you'd use a plugin with WordPress. DLLs are usually written in a language such as C or C++ and compiled into native machine code; WordPress plugins are generally written in a mixture of JavaScript, PHP, HTML and CSS. The link for this article located at Sophos is no longer available. . Critical vulnerabilities discovered in WordPress extensions; users urged to perform updates immediately to protect their websites.. wordpress plugins, malicious plugins, security update, malware threat. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.