Free Republic
Browse · Search
General/Chat
Topics · Post Article

The key to avoiding the worst of this is regularly quitting your browsers and starting them up from scratch. Don’t allow them to continue running in the background while you do other things or your computer or device sleeps or hibernates. Do you browsing and QUIT the browser. On restarting, don’t let your browser reload previous tabs on restarting.
1 posted on 02/25/2019 1:35:50 PM PST by Swordmaker
[ Post Reply | Private Reply | View Replies ]


To: Swordmaker

All it takes is a little Windex.


2 posted on 02/25/2019 1:44:51 PM PST by ImJustAnotherOkie (All I know is what I read in the papers.)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: dayglored; ShadowAce; ThunderSleeps; ~Kim4VRWC's~; 1234; 5thGenTexan; AbolishCSEU; Abundy; ...
Multi platform, multi browser vulnerability survives leaving webpage and can produce huge cross platform bot nets. Affects Windows, Macs, Android. iOS, and Linux machines using the majority of modern browsers using an extremely hard to detect new modality of attack on the Internet websites. —PING!

Pinging dayglored, ShadowAce, and ThunderSleeps for your lists.


Cross platform and browser vulnerability Ping!

If you want on or off the Mac Ping List, Freepmail me.

3 posted on 02/25/2019 1:45:59 PM PST by Swordmaker (My pistol self-identifies as an iPad, so you must accept it in gun-free zones, you hoplaphobe bigot!)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker
"Academics from Greece have devised a new browser-based attack"

Academics? I have to believe that something's been lost in translation there.

6 posted on 02/25/2019 1:54:08 PM PST by Windflier (Pitchforks and torches ripen on the vine. Left too long, they become black rifles.)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

Will caching be a path to exposure, and perhaps launching the browser in the background without user noticing?


7 posted on 02/25/2019 1:59:23 PM PST by SgtHooper (If you remember the 60's, YOU WEREN'T THERE!)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

Merde.


10 posted on 02/25/2019 2:13:02 PM PST by grey_whiskers (The opinions are solely those of the author and are subject to change with out notice.)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

“Neither the original MarioNet attack or the subsequent botnet operations require attackers to exploit browser vulnerabilities, but merely abuse existing JavaScript execution capabilities and new HTML5 APIs.”

So much for HTML5 being safer than Flash.

As for Java Script it is better to block it on any site that you don’t trust. If can’t read the site without it then just leave the site. Nothing is more dangerous than JavaScript.


12 posted on 02/25/2019 2:51:14 PM PST by Revel
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

I’ve had this type of exploit happen since I upgraded my Debian 8 Linux machine to a more recent Firefox version. The upgrade made my No Script plugin not work and changed my Java Script package. Another issue is how Firefox manages the security package, I’ve helped it some with changes that I made to TLS methods. There are not graphic adjustments for it, they must be done via about:config

It takes a little time to understand and I’m still having browser crashes.

Also noticed something called [Web content] and it’s -child ‘s that make something like a denial of service attack.

I have no doubt some people are planning to monitor our content and block it actively. It is probably not just Firefox that is on the block.

Firefox has been the best common browsers as far as security is concerned. But they did take Soros money a couple of years ago. Need I say more?


21 posted on 02/25/2019 3:49:25 PM PST by Texas Fossil ((Texas is not where you were born, but a Free State of Heart, Mind & Attitude!))
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

This may be related too.

New Metasploit Payloads for Firefox Javascript Exploits
https://blog.rapid7.com/2014/01/23/firefox-privileged-payloads/


22 posted on 02/25/2019 3:50:55 PM PST by Texas Fossil ((Texas is not where you were born, but a Free State of Heart, Mind & Attitude!))
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

This doesn’t surprise me, for years if you had youtube open and playing in Safari on Mac and then closed a MacBook Air, the youtube video would keep playing.

The first time I reported this they made me document it like crazy, then it got fixed and now it’s happening again and it seems like it’s a common problem with either background SW still running after the lid is closed, or a corrupted SMC or NVRAM or PRAM.

https://www.guidingtech.com/47697/macbook-sleep-issues/

Not surprising that some hacker scum are taking advantage of this or something similar to run a process as described in your article.

We need Saudi punishments for hackers. Chop off their hands.


26 posted on 02/25/2019 8:44:33 PM PST by BTerclinger (MAGA)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: rdb3; Calvinist_Dark_Lord; JosephW; Only1choice____Freedom; Ernest_at_the_Beach; martin_fierro; ...

32 posted on 02/26/2019 4:13:49 AM PST by ShadowAce (Linux - The Ultimate Windows Service Pack)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

https://zdnet2.cbsistatic.com/hub/i/r/2019/02/25/a1818560-0938-450c-b664-29ccb65557a8/resize/370xauto/e9c6741fd6695234f66fd7ab92156c4a/marionet-compatibility.png

Regarding the table you referenced, I’m assuming Opera is also compromised as well? Opera shows up as chrome when I use it (and I use it primarily on the laptop I have running UBUNTU).


36 posted on 02/26/2019 5:52:25 AM PST by Darnright (We live in interesting times.)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

This is something released into the wild from some country’s cyber warfare toolbox. Wikileaks has many of the CIA toolbox’s from Snowden’s treasonous activities.


42 posted on 02/26/2019 6:14:18 AM PST by Jumper
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker; ImJustAnotherOkie; SgtHooper; malach; sparklite2; grey_whiskers; BipolarBob; Revel; ...
With firefox, I entered   about:config   then searched for "serviceworker". It listed 11 preference items.

One of them was...

dom.serviceworkers.enabled   TRUE

So I plan to toggle that to FALSE and let the chips fly. Hopefully only sh*t webpage code will be negatively affected.

if necessary, messing with the other ten preferences might also be a good idea.

47 posted on 02/26/2019 7:39:26 AM PST by Future Useless Eater (Congress: Add clarification that CO2 is a PLANT FOOD, not a pollutant covered by the Clean Air Act)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

Thanks Swordmaker!
Have one of those Browsers!

(How was the cruise?)


52 posted on 02/26/2019 9:47:29 AM PST by Pete from Shawnee Mission
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker
The key to avoiding the worst of this is regularly quitting your browsers and starting them up from scratch.

Thanks Swordmaker

53 posted on 02/26/2019 10:05:05 AM PST by GOPJ (The Jussie Smollett Media Hoax is a hate crime against Trump Supporters - - John Nolte)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

It can even happen here at the FR with no ads. Go hit the Marshmallow Beer thread and watch the processes and connections. Everyone needs to be careful from what source they link to on here. Those links complete a connection to spam API services in our browsers.


62 posted on 02/26/2019 12:03:44 PM PST by Openurmind
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

And clear your cookies/cache.


81 posted on 02/27/2019 5:57:52 AM PST by Excellence (Marine mom since April 11, 2014)
[ Post Reply | Private Reply | To 1 | View Replies ]

Free Republic
Browse · Search
General/Chat
Topics · Post Article


FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson