Frame-14

Privacy Ninja

        • DATA PROTECTION

        • CYBERSECURITY

        • Secure your network against various threat points. VA starts at only S$1,000, while VAPT starts at S$4,000. With Price Beat Guarantee!

        • API Penetration Testing
        • Enhance your digital security posture with our approach that identifies and addresses vulnerabilities within your API framework, ensuring robust protection against cyber threats targeting your digital interfaces.

        • On-Prem & Cloud Network Penetration Testing
        • Boost your network’s resilience with our assessment that uncovers security gaps, so you can strengthen your defences against sophisticated cyber threats targeting your network

        • Web Penetration Testing
        • Fortify your web presence with our specialised web app penetration testing service, designed to uncover and address vulnerabilities, ensuring your website stands resilient against online threats

        • Mobile Penetration Testing
        • Strengthen your mobile ecosystem’s resilience with our in-depth penetration testing service. From applications to underlying systems, we meticulously probe for vulnerabilities

        • Cyber Hygiene Training
        • Empower your team with essential cybersecurity knowledge, covering the latest vulnerabilities, best practices, and proactive defence strategies

        • Thick Client Penetration Testing
        • Elevate your application’s security with our thorough thick client penetration testing service. From standalone desktop applications to complex client-server systems, we meticulously probe for vulnerabilities to fortify your software against potential cyber threats.

        • Source Code Review
        • Ensure the integrity and security of your codebase with our comprehensive service, meticulously analysing code quality, identifying vulnerabilities, and optimising performance for various types of applications, scripts, plugins, and more

        • Email Spoofing Prevention
        • Check if your organisation’s email is vulnerable to hackers and put a stop to it. Receive your free test today!

        • Email Phishing Excercise
        • Strengthen your defense against email threats via simulated attacks that test and educate your team on spotting malicious emails, reducing breach risks and boosting security.

        • Cyber Essentials Bundle
        • Equip your organisation with essential cyber protection through our packages, featuring quarterly breached accounts monitoring, email phishing campaigns, cyber hygiene training, and more. LAUNCHING SOON.

Mozilla Firefox Adopts New Privacy-Enhancing Referrer Policy

Mozilla Firefox Adopts New Privacy-Enhancing Referrer Policy

Mozilla has announced that it will introduce a more privacy-focused default Referrer Policy to protect Firefox users’ privacy, starting with the web browser’s next version.

The new user privacy protection feature against accidental leaking of sensitive user data will be introduced in Firefox 87.

This URL is sent together with the HTTP Referrer header between websites during subresources requests and navigating between sites by clicking on links. 

“Unfortunately, the HTTP Referrer header often contains private user data: it can reveal which articles a user is reading on the referring website, or even include information on a user’s account on a website,” Mozilla’s Dimi Lee and Christoph Kerschbaumer said earlier today.

Also Read: The DNC Singapore: Looking At 2 Sides Better

As BleepingComputer has observed while sieving through internal web server logs, referrer URLs can expose an extensive array of other sensitive info, including but not limited to Internal hostnames for government and enterprise entities that most likely should not be public.

Malicious actors could then pull sensitive info like internal names from their web servers’ access logs or their analytics software if they can trick a target into visiting a site hosted on servers under their control.

Firefox 87 new default Referrer Policy
Firefox 87 new default Referrer Policy (Mozilla)

“As illustrated in the example above, this new stricter referrer policy will not only trim information for requests going from HTTPS to HTTP, but will also trim path and query information for all cross-origin requests,” they added.

“With that update, Firefox will apply the new default Referrer Policy to all navigational requests, redirected requests, and subresource (image, style, script) requests, thereby providing a significantly more private browsing experience.”

To benefit from this added privacy protection, Firefox users will only have to update their browsers to version 87, which will come with the new ‘strict-origin-when-cross-origin’ referrer-policy that crops any user sensitive info from referrer URLs.

By applying the new Referrer Policy to all navigational, redirected, and subresource (image, style, script) requests, Firefox will provide a more private browsing experience to all users after its release on Tuesday.

Firefox 86, the previous stable version, also came with a significant privacy boost with the addition of Total Cookie Protection. This privacy feature prevents web trackers from keeping tabs on your web activity by keeping each site’s cookies in a separate “cookie jar” container.

Also Read: 4 Best Practices On How To Use SkillsFuture Credit

Starting with version 85, Firefox added supercookie protection to block hidden trackers from tracking users across sites by isolating caches and network connections for each visited site.

0 Comments

KEEP IN TOUCH

Subscribe to our mailing list to get free tips on Data Protection and Data Privacy updates weekly!

Personal Data Protection

REPORTING DATA BREACH TO PDPC?

We have assisted numerous companies to prepare proper and accurate reports to PDPC to minimise financial penalties.
×

Hello!

Click one of our contacts below to chat on WhatsApp

× Chat with us