Security: Difference between revisions
Jump to navigation
Jump to search
mNo edit summary |
|||
Line 1: | Line 1: | ||
Welcome to the Mozilla Security wiki. There is not much here yet so feel free to contribute. | Welcome to the Mozilla Security wiki. There is not much here yet so feel free to contribute. | ||
=== Security-related bugs === | === Security-related bugs === | ||
Line 71: | Line 64: | ||
* [[Security:EV]] — summary about EV certification | * [[Security:EV]] — summary about EV certification | ||
* [[Image:Intro_to_Mozilla_Metrics.pdf]] Draft discussion of Security Metrics at Mozilla | * [[Image:Intro_to_Mozilla_Metrics.pdf]] Draft discussion of Security Metrics at Mozilla | ||
=== Meeting Notes === | |||
* [[Security/Meetings/2011-06-15|2011-06-15]] | |||
* [[Security/Meetings/2011-06-08|2011-06-08]] | |||
* [[Security/Meetings/2011-06-01|2011-06-01]] |
Revision as of 18:50, 14 June 2011
Welcome to the Mozilla Security wiki. There is not much here yet so feel free to contribute.
How to report a security issue
Want to fix a security bug? Here is a list of old thorny bugs you can take on.
Security reviews for new features/products
Main Article: Security/Reviews
Security Radar
Unlinked Reviews
Security Discussions / Possible Features
Security feature work
Main article: Security/Features
- Content Security Policy proposal and implementation
- Strict Transport Security proposal to prevent network attacks on all-HTTPS sites
- Origin proposal for CSRF and clickjacking mitigation (i.e. anything that requires authentication of the origin of a request)
- Process Isolation: Internal compartmentalization of Firefox architecture
Security Initiatives
- The plugin problem.
Mozilla Security resources and blogs
Mozilla security developer docs
Stuff that needs to be merged into this page properly
- Security:Strawman Model
- Security:Security Checks In Glue — a possible security model
- Security:Scattered Security Checks — a possible security model
- Security:Wrapper-based Checks — a possible security model
- Security:Bibliography
- Security:EV — summary about EV certification
- File:Intro to Mozilla Metrics.pdf Draft discussion of Security Metrics at Mozilla