SecurityEngineering/2013: Difference between revisions
Jump to navigation
Jump to search
No edit summary |
|||
Line 1: | Line 1: | ||
2013 | __NOTOC__ | ||
Working towards our team [[SecurityEngineering/Strategy|Strategy]], this is what we will work towards in 2013. | |||
= | == Make Firefox as Secure as Other Browsers == | ||
* Evangelism: Larissa's airmo talk on secure UX design [https://code.google.com/p/chromium/issues/detail?id=170453 was picked up by chromium] | |||
* Implement: [[FoxInABox|Sandboxing]] on Linux and E10S ({{bug|653064}}) | |||
* Implement: Click-To-Play plugins for Firefox ({{bug|738698}}) | |||
* Implement/Evangelize: CSP 1.0 for Firefox platform ({{bug|663566}}) | |||
== Build Security and Privacy into Mobile == | |||
* Consult: [[Apps/Security|B2G App Security Model]] | |||
* Implement: CSP for apps on B2G ({{bug|773891}}) | |||
== Improve Transparency and Control of Tracking online == | |||
* Implement/Evangelize: Third Party Cookie blocking {{bug|818430}}, though evolving, will improve control | |||
* Research: [http://www.mozilla.org/en-US/collusion/ Collusion project] improved transparency and generated buzz | |||
* Research: [https://dnt-dashboard.mozilla.org DNT statistics] made available by the web | |||
= | == Build Security into Web Communications == | ||
* Research: Web Crypto | |||
* Implement: Certificate Revocation upgrades | |||
Web | |||
= | |||
* | |||
Research | |||
* | |||
Implement |
Revision as of 21:13, 7 June 2013
Working towards our team Strategy, this is what we will work towards in 2013.
Make Firefox as Secure as Other Browsers
- Evangelism: Larissa's airmo talk on secure UX design was picked up by chromium
- Implement: Sandboxing on Linux and E10S (bug 653064)
- Implement: Click-To-Play plugins for Firefox (bug 738698)
- Implement/Evangelize: CSP 1.0 for Firefox platform (bug 663566)
Build Security and Privacy into Mobile
- Consult: B2G App Security Model
- Implement: CSP for apps on B2G (bug 773891)
Improve Transparency and Control of Tracking online
- Implement/Evangelize: Third Party Cookie blocking bug 818430, though evolving, will improve control
- Research: Collusion project improved transparency and generated buzz
- Research: DNT statistics made available by the web
Build Security into Web Communications
- Research: Web Crypto
- Implement: Certificate Revocation upgrades