Friday, November 1, 2024
HomeFirefoxFirefox 70 Released: Added Integrated Breach Alerts, Social Tracking Protection & Fixed...

Firefox 70 Released: Added Integrated Breach Alerts, Social Tracking Protection & Fixed 9 Security Bugs

Published on

Malware protection

Mozilla released Firefox 70 with the fixes for security vulnerabilities that affected the previous version of Firefox and added Enhanced Tracking Protection (ETP) by default.

Mozilla fixed 9 vulnerabilities including one critical severity bug, 3 high severity bug, and 5 Moderate level vulnerabilities.

More Security Protection with  Firefox Lockwise

Firefox password management tool called Lockwise improved with more security protection and allows you to create, update, and delete your logins and passwords to sync across all your devices.

- Advertisement - SIEM as a Service

Integrated breach protection with Lockwise now alerts you about potentially vulnerable passwords and if it’s exposed in any data breach.

Complex password generation lets you create and save strong passwords for new online accounts.

Social tracking protection, which blocks cross-site tracking cookies from sites like Facebook, Twitter, and LinkedIn, is now a standard feature of Enhanced Tracking Protection.”

More Browser Features

Mozilla added more features including address bar indication for Geo-location when a website uses it.

A stand-alone firefox account menu added that helps users to easily access Firefox services such as Monitor and Send.

Google removed EV indicators Chrome version 77. now Firefox step towards it, starting from Firefox 70 all the green lock icons turned to gray.

Padlock before and After

Improvement with a Core Engine component

Mozilla rolled out the WebRender for Windows users by default on Windows desktops with integrated Intel graphics cards and resolution of 1920×1200 or less) for improved graphics rendering.

Also, Firefox for macOS Compositor improvement helps to speed up page load by as much as 22 percent, and reduce resource use for video by up to 37 percent.

Security Updates

Mozilla fixed totally 9 vulnerabilities that affected Firefox 69 and earlier version:

CVE-2019-15903: Heap overflow in expat library in XML_GetCurrentLineNumber
CVE-2019-11757: Use-after-free when creating index updates in IndexedDB
CVE-2019-11758: Potentially exploitable crash due to 360 Total Security
CVE-2019-11759: Stack buffer overflow in HKDF output
CVE-2019-11760: Stack buffer overflow in WebRTC networking 
CVE-2019-11761: Unintended access to a privileged JSONView object 
CVE-2019-11762: document.domain-based origin isolation has same-origin-property violation 
CVE-2019-11763: Incorrect HTML parsing results in XSS bypass technique
CVE-2019-11764: Memory safety bugs fixed in Firefox 70 and Firefox ESR 68.2

Users can install the new update via the following links or direct Firefox download page.

You can follow us on Linkedin, Twitter, Facebook for daily Cybersecurity and Hacking News update.

Balaji
Balaji
BALAJI is an Ex-Security Researcher (Threat Research Labs) at Comodo Cybersecurity. Editor-in-Chief & Co-Founder - Cyber Security News & GBHackers On Security.

Latest articles

LightSpy iOS Malware Enhanced with 28 New Destructive Plugins

The LightSpy threat actor exploited publicly available vulnerabilities and jailbreak kits to compromise iOS...

ATPC Cyber Forum to Focus on Next Generation Cybersecurity and Artificial Intelligence Issues

White House National Cyber Director, CEOs, Key Financial Services Companies, Congressional and Executive Branch...

New PySilon RAT Abusing Discord Platform to Maintain Persistence

Cybersecurity experts have identified a new Remote Access Trojan (RAT) named PySilon. This Trojan...

Konni APT Hackers Attacking Organizations with New Spear-Phishing Tactics

The notorious Konni Advanced Persistent Threat (APT) group has intensified its cyber assault on...

Free Webinar

Protect Websites & APIs from Malware Attack

Malware targeting customer-facing websites and API applications poses significant risks, including compliance violations, defacements, and even blacklisting.

Join us for an insightful webinar featuring Vivek Gopalan, VP of Products at Indusface, as he shares effective strategies for safeguarding websites and APIs against malware.

Discussion points

Scan DOM, internal links, and JavaScript libraries for hidden malware.
Detect website defacements in real time.
Protect your brand by monitoring for potential blacklisting.
Prevent malware from infiltrating your server and cloud infrastructure.

More like this

Microsoft Urges Windows Admins to Patch Microsoft Message Queuing RCE Flaw

Microsoft has disclosed two Critical remote code execution vulnerabilities in MSMQ (Microsoft Message Queuing)...

Microsoft Unveild New Windows 11 Features To Strengthen Security

Microsoft has been prioritizing security in Windows, as they introduced Secured-Core PCs to protect...

NETGEAR buffer Overflow Vulnerability Let Attackers Bypass Authentication

Some router models have identified a security vulnerability that allows attackers to bypass authentication.To...