Bonum Certa Men Certa

Mozilla Should Denounce Microsoft Windows, Not Just Proprietary Web Browsers

Summary: Mozilla raises an important point by alluding to the fact that non-free (proprietary) software should be assumed to have back doors

SECURITY and privacy require freedom and control (by the user) from bottom to top, starting from the bootloader (NSA backdoors in bootloaders are now rumoured [1]). A British blogger in ZDNet, one whom UEFI Forum tried to silence or appease less than a couple of years back (as they did with other UEFI critics), continues to criticise UEFI, the Microsoft (notoriously strong NSA ally) promoted and Intel (as in intelligence) managed back doors-friendly BIOS replacement (UEFI facilitates remote bricking of computers, over the Internet).



Several months ago Tor was compromised through Firefox on Microsoft Windows. Firefox itself did not have back doors, but Windows has plenty of back doors (this month Microsoft already revealed several [2], which the NSA already knows about) and Mozilla's own platform uses Linux, not Windows.

Yesterday there were quite a few headlines quoting Mozilla's Brendan Eich, CTO and SVP of Engineering, for his warning about back doors [3-5], which are destroying any notion of information security in proprietary software [6].

With Mozilla diverging away from Windows (Firefox OS brings back memories of Netscape [7]) and signing major deals to bring this Linux-powered operating system to a lot of devices (not just phones [8-12]) we can hope that the whole stack, from bottom to top (hardware, operating system, applications) will be void of back doors. Let's wish Mozilla good luck. Chrome, which has just had another major release [13,14] is proprietary (never mind the Chromium marketing) and it cannot be seen as a back doors-free substitute to Firefox and Firefox OS (the same goes for Chrome OS). As for Android, recall what company is behind it. There are already reports (in corporate press) about it being remotely hijacked by the FBI. Ubuntu, Tizen, and Sailfish OS (Jolla) might be other decent options, but we don't know enough about them, at least not yet. WebOS is controlled by a very surveillance-happy company (LG), so we can assume, as the name suggests, that it transmits personal data over the Web/Internet.

Related/contextual items from the news:



  1. NSA's backdoors are real -- but prove nothing about BadBIOS
    Recent revelations about NSA hardware and firmware backdoors gives all the evidence that those who believe BadBIOS Trojans exist need to see. The spying technology has arrived. The only question is if the BadBIOS incident truly happened.


  2. Microsoft Starts 2014 With Four Security Advisories


  3. Mozilla Calls on World to Protect Firefox Browser From the NSA
    Brendan Eich is the chief technology officer of the Mozilla Foundation, the non-profit behind the Firefox web browser. Among many other things, he oversees the Firefox security team — the software engineers who work to steel the browser against online attacks from hackers, phishers, and other miscreants — and that team is about to get bigger. Much, much bigger.


  4. Mozilla: Firefox Has No Government Backdoors
    Andreas Gal, Mozilla's vice president of mobile and R&D, and Brendan Eich, CTO and SVP of Engineering, have updated Gal's blog with a long entry about how Firefox users can trust Mozilla when it comes to government backdoors and user privacy.

    In the blog, they point out that due to laws in the U.S. and elsewhere, Web surfers must interact with Internet services knowing full well that even though cloud service companies want to protect user privacy, eventually one day those companies will be required to comply with laws. The government may acquire information that seems to violate privacy and could even force surveillance. Even more, the government can do so while enforcing gag orders on the service, leaving the consumer unaware.


  5. Mozilla CTO Eich: If your browser isn't open source (ahem, ahem, IE, Chrome, Safari), DON'T TRUST IT
    Mozilla CTO Brendan Eich has cautioned netizens not to blindly trust software vendors, arguing that only open-source software can be assured to be free from government-mandated surveillance code.

    "Every major browser today is distributed by an organization within reach of surveillance laws," Eich wrote in a joint blog post with Mozilla research and development VP Andreas Gal on Saturday.

    Under those laws, Eich argued, governments could compel software companies to include surveillance code in their products. Worse, the vendors may not be able to admit to the public that such code exists when asked, because of gag orders.

    The Mozilla man argued that open-source software can help alleviate this risk because customers have the opportunity to review its source code and spot any potential backdoors.


  6. RIP, information security, done in by backdoors and secret deals
    It seems that the very tools we use to secure our networks represent the greatest insider threat of all


  7. Firefox OS: The Return of Microsoft’s Netscape Fears
    Back in the days before the release of Windows 95, just as the public was discovering the Internet as an alternative to private networks such as Prodigy and CompuServe, Netscape was the bomb. In those days, Microsoft didn’t supply any method for surfing the Internet, so people visited their local Egghead store, or other software outlets, to buy a shrink wrapped version of Netscape on floppy disks, which opened up a whole new world to computer users.


  8. Linux-based Platform Coming to Low-cost Smartphones, Tablets, Smart TVs


  9. Firefox Developers Continue Tuning ASM.js Performance
    ASM.js is the subset of JavaScript that is aimed for performance, easy to optimize, and is suitable for EmScripten to target in its converting of C/C++ code through LLVM and into this optimized JavaScript. EmScripten itself has been an incredibly interesting project.


  10. Mozilla Reveals Plans to Take Firefox OS and HTML 5 to New Devices


  11. Mozilla Expands Its Firefox OS Partners, Platforms


  12. Firefox OS Tablets, TVs and More to Arrive This Year


  13. Google Releases Chrome 32 Web Browser for Windows, Mac, Linux
  14. Chrome 32 Has New Tab Indicators, Better Performance
    Google Chrome 32 features new tab indicators for sound / webcam / casting, automatic blocking of known malware files, a number of new apps and extension APIs, and numerous "under the hood" changes that promise to provide better stability and performance.


Recent Techrights' Posts

Links 02/02/2025: Website Revamps, Blogging About Blogging, and Self-Harming Tariff Wars (Higher Prices)
Links for the day
 
Yandex Has Nearly Caught Up With Microsoft Internationally, Bing Falls to Pre-LLM Hype Levels
Of course we've been saying all along that this would happen
Germany's 'Share' of GNU/Linux Rises to All-Time High Based on This Surveyor
Many public services have made the move to GNU/Linux
Microsoft Uses the Mindset of Drug Dealers and Pays 'News' Sites to Sell 'Drugs'
Microsoft pays publishers to spread the illusion that the only viable option for developers and non-developers is "drugs" like Visual Studio and Microsoft Office, respectively
Windows Going South in the "Global South" (Africa and More)
Microsoft has long been shameless about using the tactics of drug dealers
Sharp Drop for Microsoft Windows This Month, Based on statCounter
Facebook meanwhile censors GNU/Linux advocacy
3 Months Ago Lupa Saw 4,200+ Unique Gemini Capsules; Now It Sees Nearly 4,400
many bots target our capsule (129,152 Gemini requests yesterday alone)
Gemini Links 02/02/2025: Geminispace Targeted by Chatbots, Gabbro 0.1.1 Released
Links for the day
Oracle's Debt Soars to 100 Billion Dollars (12 Billion Added in Just 9 Months!) While Larry Ellison Backs Fascism for Bailouts, Graft, and "Contracts"
Including attempts to gain control of TikTok, owing to the corrupt dictator long promoted by Larry Ellison (also via Twitter takeover)
Links 02/02/2025: Union-Busting and Censorship by Executions
Links for the day
Gemini Links 02/02/2025: Limits Pushing, Free Software Absolutism, and Why Gemini Matters
Links for the day
Slopwatch: BetaNews and linuxsecurity.com Have Just Published More Fake 'Articles' About "Linux"
There's probably more "Linux" slop out there, but we do our best to identify it on a daily basis
Richard Stallman Has Another Talk in India Tomorrow, at Least Fourth India Talks in Recent Days
In the past month he has given at least half a dozen talks
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Saturday, February 01, 2025
IRC logs for Saturday, February 01, 2025
Links 01/02/2025: Chinese and American Censorship, Cloud-[sic]Native Targeted by Software Patents
Links for the day
Links 01/02/2025: Belated Happy New Year 2025 and Gabbro 0.1.2
Links for the day
Hiring for Tech Roles Based on Perceived Loyalty is No Better Than Hiring to Meet Diversity Quotas
What we're seeing right now is a national security disaster and it is almost purely about technology
S.E.O. SPAM by Serial Sloppers With L.L.M. Garbage is Hurting Linux
We continue to run Slopwatch
Links 01/02/2025: Administrative Chaos and Aviation Disasters Persist
Links for the day
Arrested: Albanian Outreachy whistleblowers, Sonny Piers GNOME & Debian connections
Reprinted with permission from Daniel Pocock
Links 1/2/2025: LLM Hype Revisited, Linuxwashing by Oumi
Links for the day
Growing Evidence That the Patent Industry Has Become a Major Scam
Seeing that the patent "industry" has turned to serious crimes (sometimes to cover up corruption) and seeing that the net negative is clearer for all to see, people who argue for abolition of all patents will have a field day
IBM Says That Half of Its "Assets" is Basically Pure Fiction ("Goodwill")
It times get tough, IBM can sell "Goodwill" at the local pawn shop and pay back the lenders, right?
Planet Ubuntu Overrun by LLM Slop? Faizul "Piju" 9M2PJU Seems to be Publishing Fake Articles About "Linux"...
Maybe it is "assisted" by LLM slop, but slop is slop and it introduces many problems
Gemini Links 01/02/2025: LLMs, Analog Computer, and BorgBackup
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, January 31, 2025
IRC logs for Friday, January 31, 2025
Links 31/01/2025: Mass Layoffs at Amazon and Microsoft, Sweden Again Fails to Protect Critics of Violence
Links for the day
Slopwatch: Fake Articles About "Linux" and More (Latest Roundup Featuring BetaNews, Janus Atienza, and Brittany Day From Guardian Digital, Inc)
LLM slop season
Microsoft Staff Explains How Microsoft Swindled Employees and Avoided Paying Out Severance Pay (Microsoft Hasn't Much Money Left in the Bank)
This is a classic way to avoid paying workers
"Not one of us" by Dr. Andy Farnell
Elon Musk has brought embarrassment to nerds and technologists
Gemini Links 31/01/2025: "Bulletin Buble" and "Why Blog?"
Links for the day
Static Site Generators (SSGs) Pay Off: Vastly Faster Sites, Much Smaller Hosting Bills
success story for SSGs
Of Note: Linux Foundation Has Already Let Linux.com Rot for About 4 Months (No Activity)
there's no campaign aside from marketing spam there
Techrights Should be Even Faster Now
We're now better off
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, January 30, 2025
IRC logs for Thursday, January 30, 2025
Richard Stallman (RMS) Gave 3 Talks in India in Less Than a Week
In India this month we've not seen a single negative comment about RMS
Indian Data Biases statCounter For or Against "Linux"
In statCounter, the GNU/Linux increases and decreases are deeply tied to what it does with data collected in India
The Corporate Media Pretends That Facebook ("Meta") Has Performed Well, But Its Debt Doubles Every 2 Years Despite Mass Layoffs
That same media also helps parrot misleading financial claims
Microsoft's Debt Surged by More Than 6,000,000,000 Dollars in Just 3 Months
numbers released hours ago
The Sheer Irony of Microsoft Proxy Accusing Others of 'Stealing'
Wherever DeepSick's data came from, Microsoft (or its proxy) is in no position to issue criticism.
The Difference a Decade (and GAFAM Money) Makes
Credibility cannot be purchased
[Meme] The Free Software Foundation (FSF) Has Critics Because Its Message is Effective
Applying to others the same standards one is willing to violate?