Also want to add that this was caused by a configuration issue. If you want security, don’t use Firefox (or its forks) default configs, look into Betterfox.
Comment on Zen browser had a backdoor enabled by default
priapus@sh.itjust.works 2 weeks ago
I’m not sure why you linked to this irrelevant 3 week old issue while referring to something that was fixed a year ago. Referring to it as a backdoor also implies that I was malicious, when it was simply incompetence. Have there been any security issues since? (Not trying to imply that not having any would make it safe, just wondering).
Zen is an amateur hobbyist project, expecting it to be something else is silly. It isn’t backed by a company. You take on these risks when you use a project like this. Its open source, do your research before using it for anything important.
priapus@sh.itjust.works 2 weeks ago
Wildly_Utilize@infosec.pub 2 weeks ago
I’d like to take this opportunity to say Mullvad browser is maintained by Mullvad and Tor Project which in my eyes sets it way apart from these hobby flrks (including librewolf)
priapus@sh.itjust.works 2 weeks ago
I agree, Mullvad is the only fork that I have confidence in the security of (ignoring Tor ofc since it’s not really for general use).
pastermil@sh.itjust.works 2 weeks ago
I’ll bite: what’s wrong with LibreWolf?
priapus@sh.itjust.works 2 weeks ago
It just lacks manpower unfortunately. Going with a browser that has the funding for a security team is the safer option.