Skip to main content

The FBI hacked into Firefox, and Mozilla wants to know how

FBI Headquarters
Image used with permission by copyright holder
Mozilla wants to know how the FBI broke into its browser, and is using an ongoing court case to force the government to do it. The case revolves around the Tor Browser, a Firefox-based browser that allows individuals to browse the web anonymously and deter surveillance.

FBI agents somehow broke into the browser of Jay Michaud in an effort to catch him in the alleged act of downloading child pornography. While Mozilla is obviously not taking Michaud’s side in the case, the organization felt it important to know how exactly agents got into Tor in the first place.

“At this point, no one (including us) outside the government knows what vulnerability was exploited and whether it resides in any of our code base,” Mozilla’s chief legal and business officer Denelle Dixon-Thayer said in a Wednesday blog post.

What makes this case interesting is the judge’s ruling surrounding the disclosure of how the hack was done. U.S. District Court Judge Robert Bryan ordered the FBI to disclose the nature of the vulnerability to Michaud’s defense team, but also forbid the groups from disclosing the vulnerability to either Tor or Mozilla, whose browsers may be somehow vulnerable.

“We don’t believe that this makes sense because it doesn’t allow the vulnerability to be fixed before it is more widely disclosed,” Dixon-Thayer argued.

Judge Bryan’s decision is curious, and could show a lack of understanding of how security flaws are disclosed. While the courts have a valid reason for protecting the right of the FBI to perform its investigation the best way it sees fit, innocent Tor and Firefox users might be at risk. The security community has long had a policy of alerting software developers to any discovered flaw to the software makers themselves first.

The thought is, if the developers get wind of the vulnerability first — any potential effects from malicious use would be minimized. Here, Mozilla has no idea what is wrong with its browser, so there’s no way to fix it.

“We are on the side of the hundreds of millions of users who could benefit from timely disclosure,” Dixon-Thayer said. A full copy of Mozilla’s amicus curiae brief is available from the organization’s website.

Ed Oswald
For fifteen years, Ed has written about the latest and greatest in gadgets and technology trends. At Digital Trends, he's…
OpenAI could increase subscription prices to as much as $2,000 per month
a phone displaying the ChatGPT homepage on a beige bbackground.

OpenAI recently surpassed 1 million subscribers, each paying $20 (or more, for Teams and Enterprise), but that doesn't seem to be enough to keep the company financially afloat given that hundreds of millions of people use the chatbot for free.

According to The Information, OpenAI is reportedly mulling over a massive rise in its subscription prices to as much as $2,000 per month for access to its latest and models, amid rumors of its potential bankruptcy.

Read more
The classic HP 17-inch laptop just got a 50% price cut
The HP 17t-cn300 17.3-inch laptop against a white background.

If you want your next laptop deals purchase to have a relatively large screen, we highly recommend the HP Laptop 17t as it's on sale from HP with a 50% discount. From its original price of $850, it's all the way down to only $420, but there's no telling for how long. You'll only be able to get this popular laptop with savings of $430 if you hurry, so don't hesitate. Add the device to your cart and push through with the checkout process as fast as you can, as the laptop may go back to its regular price at any minute.

Why you should buy the HP Laptop 17t
The first thing to notice about the HP Laptop 17t is its 17.3-inch screen, which is among the biggest displays that you can get on a laptop. With HD+ resolution, it's perfect for working on visual projects and watching streaming shows. The large screen also makes it easy to navigate the menus of Windows 11 Home, which comes pre-installed in the laptop's 256GB SSD.

Read more
A forced Windows update is coming next month
Windows 11 logo on a laptop.

Windows 11 version 22H2 will reach its end of servicing next month, and Microsoft has announced a forced update to 23H2 for October 8. This means machines running 22H2 (Home and Pro editions) will stop receiving updates after next month, leaving them vulnerable to security threats. Enterprise, Education, and Internet of Things (IoT) Enterprise editions running version 21H2 will also receive the automatic update.

In a post on the Windows Message Center, Microsoft urges users to update before October 8 or participate in the automatic update to keep themselves "protected and productive" since the monthly Patch Tuesday updates are "critical to security and ecosystem health."

Read more