Bonum Certa Men Certa

Windows Ruining Firefox for GNU/Linux Users



Reprinted with permission from Ryan

One of the top crashers on Firefox 115 is Windows malware interfering with Firefox in a particular way.



On TechRights IRC, Roy Schestowitz sums it up.



“Many firefox bug fixes are like that. They release security patches (and new blobs) but they address windows problems.”



I interjected, “Sticking your finger in the holes in the dam.”



Roy continues, “So a gnu/linux user needs to get another 200MB of junk.”



What makes it worse is that Fedora not only has this colossal piece of shit called GNOME Software that demands a restart, of the entire computer, even over a Firefox update, but that they stopped producing Delta RPMs so you have to download the full 200 MB of shit that hasn’t changed, to keep their version number in sync with Windows.



Roy notes that some of these crap patches for Windows bugs (bugs IN WINDOWS) cause Firefox to malfunction on Linux and jam up.



Also notes that Mozilla hires “Mac heads instead of software developers.”.



But it’s so much worse than that. They fired 250 people who were working on Gecko and redirected others to develop adware and spyware and nag screens under a Diversity, Equity, and Inclusion Supervisor.



One of my top complaints about the gnome-desktop metapackage (Fedora doesn’t have meta-packages as such, thank god) in Debian, was I couldn’t apt remove firefox without it wanting to take out a bunch of other stuff….or install another shitty browser I didn’t want. Chromium.



Stopping to deal with several hundred MB of RPMs and a third of it is Firefox playing bullshit version bump because Windows malware makes it crash, is very very frustrating.



However, in Fedora you _can_ dnf remove firefox. They haven’t managed to bungle this, although I suppose I should not give them ideas.



Most of the time I’m not on the fastest possible VPN server because I usually route my Internet connection through European countries where they treat people fairly well instead of the United States.



They run a lot of ads to try to convince Americans we don’t need VPNs or private browsing modes, and only a crank doesn’t like Windows (which is failing), but we know where this advice comes from.



I love operating systems (like Windows and Mac) that get in my way with “code signing” and then you find out that there’s this Chinese thing that signs whatever using an expired certificate, fakes the signature timestamp, and then runs the code.



Then you look at the Time Stamp Authority using Windows Explorer and the fucker says “Fake Time Stamp”.



It’s barely worth trying to secure your computing practices and then leave a mess like this as your operating system.



Primo forged

“Despite the warning displayed in the digital signature details above, the cracked driver for PrimoCache still functions properly when installed on Windows 10. […]



Microsoft, in response to our notification, has blocked all certificates discussed in this blog post. […]



Microsoft implements and maintains a driver block list within Windows, although it is focused on vulnerable drivers rather than malicious ones. As such, this block list should not be solely relied upon for blocking rootkits or malicious drivers.”

-Talos Intelligence


Since the operating system warns about the tampering and runs it anyway (allowing it to patch the kernel and become a rootkit), the only way to view this is “Microsoft wanted to promote ‘security’ and leave a huge gaping backdoor in for three letter agencies.”



And you notice that nowhere did Microsoft change the policy or actually fix the issue, they only made it so you can’t use the example certificates that Talos Intelligence cited.



Windows is a giant festering mess and since Mozilla kowtows and sucks up to them and spends almost all of their remaining development effort working around its many glaring design flaws, I don’t want this particular Windows chocolate in my Linux peanut butter.



Firefox is pretty garbage anyway as a “cross platform” program that’s mainly focused on Windows.



I strongly prefer to leave GNOME Web in the background while I mainly use SeaMonkey with sanity-preserving add-ons.



At least the people who work on these projects actually use them and mostly focus on Linux.



Lately when I open a Mozilla-ish browser it tends to be LibreWolf, from Flatpak (which has a Delta RPM-like update anyway) and then I grab some videos or something using video download helper and close it again.



A while back, (I read in the release notes) Mac OS broke SeaMonkey due to yet another bug in Apple’s kernel, but the problem was confined to….well….whatever special kind of nutbag uses a Mac and appreciates some of SeaMonkey’s unique functionality.



Using SeaMonkey productively is starting to require a lot of special knowledge.



One of the reasons I still use Fedora is they start out with a ton of patches that are out-of-tree and fix some of the roughness.



Ironically, I have to revert back to using GNOME Web or LibreWolf just to edit my blog since WordPress put some more Googleshit in their editor, which used to work fine with Web standards.



I also recently went back to paper statements with the electric company (no fee for that) and told the lady it was because ComEd switched to Microsoft Azure (corruption, bribery) and now it was putting Google Chrome nonsense and bastard JavaScript in their site that SeaMonkey simply does not understand.



Things are getting worse, not better. But for email, IRC, and most of my browsing it works fine.



The tab management code is largely so old it dates back to Firefox 1.5 and 2, and amusingly it can open and close tabs faster and much more responsively (I have an eleventh generation Core i7) than Firefox!



There should not be jank in a browser on a system as new as mine, and yet there is.



The mentality of Google and Mozilla is to just throw more shit in there and make the pile higher. The more the better.



Then nobody but a “trillion dollar tech company” subsidized by the US spy agencies can build a browser.



I recently reported the security vulnerability I found on Discover Bank’s Web site to Mozilla since it seems to be an issue in Gecko that sloppy Javascript programmers at the bank stumbled into.



I didn’t bother hiding the bug because I believe people should know about these things.



Here’s the bug. Here’s an archived version in case Mozilla tries to hide it later.



While they’re off worried about the millions of Windows malwares crashing their shit, they can’t bother to fix real issues, so we’ll see if this report turns into ANOTHER Bugzilla ghost town or what.



Recent Techrights' Posts

BASIC Predates Microsoft by Over a Decade, Microsoft-Controlled Sites Like The Register MS Don't Want You to Know This
The state of the media is really bad when it relies a lot on oligarchs' money and is appointing editors who are working for oligarchs
Brian Kernighan, "Only Third to Dennis Richie and Ken Thompson" (UNIX), Agreed With Someone Who Said Rust Was Just Hype, Should Not Replace C
17 hours ago
Reminder: Microsoft's "Secure Boot" Certificate for "Linux" Will be Expired in One Week
Many PCs won't manage to 'rotate' to another certificate
 
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, September 05, 2025
IRC logs for Friday, September 05, 2025
Genini Links 05/09/2025: Community, ROOPHLOCH, and PITkit
Links for the day
Links 05/09/2025: Vaccine Sceptics Poison the Well, Two Exploited Vulnerabilities Patched in Android
Links for the day
Gemini Links 05/09/2025: Logitech Lift and DIY Gemini Servers
Links for the day
Links 05/09/2025: Sainsbury's Caught Spying on In-Store Shoppers and Microsoft "OpenAI is Using Legal Threats to Harass its Critics"
Links for the day
Analogies for "Memory Safety" in Rust
Don't worry, it's Rust! It can do anything!
"Many of the Red Hat Employees Are Still Looking for Work"
Shame on IBM's CEO
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, September 04, 2025
IRC logs for Thursday, September 04, 2025
Microsoft Started With Code Literally From The Trash, Nothing Has Improved Since
The reality is, there are systems and code that are reliable. But they're not Microsoft's.
Hypothesis That New McKinsey/Microsoft Executive Inside Red Hat Will Outsource Research and Development Operations to India (Like They Do in IBM)
IBM is floundering
Slopwatch: Scams, Fake Articles About "Linux", Plagiarism, and Worse
Perhaps some time soon the LLMs or the "Big LLMs" will run out of money (to borrow) and go offline, leaving those slopfarms in a tough place
Gemini Links 04/09/2025: Means of Production and Rusting Out
Links for the day
Links 04/09/2025: Science, Hardware, and Eyes on China
Links for the day
Gemini Links 04/09/2025: Digital Minimalism and Social Control Media
Links for the day
IBM's GNU/Linux Divestment, Based on Hard But Anecdotal Evidence (IBM Fails to Recognise How Much Money It Made and Can Still Make From "Linux")
Love us or hate us, a lot of what we've been saying about Red Hat under IBM turns out to be rather accurate
Links 04/09/2025: Massive Microsoft Staff Cuts (Barely Reported), "Strange Conspiracy Theory Is Reportedly Spreading Inside OpenAI"
Links for the day
Activists Can Win, But Keep an Eye on the Ball and on the Trophy
GitHub is dying, it was a loss-making trap, not free hosting
Gemini Links 04/09/2025: Katrina Remembered, Distracted Driving, and Virtual Economics
Links for the day
At This Point It's No Longer Matthew Garrett But People Who Fund Matthew Garrett (or Companies That Fund His SLAPPs Against My Wife and I)
The only thing worse than misogynists are misogynists who fail to respect other people's right to go on holiday
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, September 03, 2025
IRC logs for Wednesday, September 03, 2025
The UEFI 9/11 - Part VI - This Serious Harm Was Planned for Over a Decade, Not an Accident or Merely Some Misfortune
The term "Serious Harm" is legally meaningful here
GNOME Unfit for Diversity and Inclusion
GNOME's leadership is using "bad words"
Brodie Robertson Addressing the Recently-Discovered Comments
Most people probably knew nothing about this until he wrote a response
Red Hat QA Team "Had Shrunk by Half Over the Past Year." (After IBM Divestment)
If Red Hat's workforce is being moved to the East, then RHEL can become a national security problem
Slopwatch: "Open Source" and "Linux" News Faked, Made by Bots and Entered Into Google News
Spam combined with slop about "Linux" has entered Google News