CINXE.COM

Browser security - Wikipedia

<!DOCTYPE html> <html class="client-nojs vector-feature-language-in-header-enabled vector-feature-language-in-main-page-header-disabled vector-feature-page-tools-pinned-disabled vector-feature-toc-pinned-clientpref-1 vector-feature-main-menu-pinned-disabled vector-feature-limited-width-clientpref-1 vector-feature-limited-width-content-enabled vector-feature-custom-font-size-clientpref-1 vector-feature-appearance-pinned-clientpref-1 vector-feature-night-mode-enabled skin-theme-clientpref-day vector-sticky-header-enabled vector-toc-available" lang="en" dir="ltr"> <head> <meta charset="UTF-8"> <title>Browser security - Wikipedia</title> <script>(function(){var className="client-js vector-feature-language-in-header-enabled vector-feature-language-in-main-page-header-disabled vector-feature-page-tools-pinned-disabled vector-feature-toc-pinned-clientpref-1 vector-feature-main-menu-pinned-disabled vector-feature-limited-width-clientpref-1 vector-feature-limited-width-content-enabled vector-feature-custom-font-size-clientpref-1 vector-feature-appearance-pinned-clientpref-1 vector-feature-night-mode-enabled skin-theme-clientpref-day vector-sticky-header-enabled vector-toc-available";var cookie=document.cookie.match(/(?:^|; )enwikimwclientpreferences=([^;]+)/);if(cookie){cookie[1].split('%2C').forEach(function(pref){className=className.replace(new RegExp('(^| )'+pref.replace(/-clientpref-\w+$|[^\w-]+/g,'')+'-clientpref-\\w+( |$)'),'$1'+pref+'$2');});}document.documentElement.className=className;}());RLCONF={"wgBreakFrames":false,"wgSeparatorTransformTable":["",""],"wgDigitTransformTable":["",""],"wgDefaultDateFormat":"dmy", "wgMonthNames":["","January","February","March","April","May","June","July","August","September","October","November","December"],"wgRequestId":"edef3ecd-b36f-4bda-b419-a52a3629d72b","wgCanonicalNamespace":"","wgCanonicalSpecialPageName":false,"wgNamespaceNumber":0,"wgPageName":"Browser_security","wgTitle":"Browser security","wgCurRevisionId":1274929835,"wgRevisionId":1274929835,"wgArticleId":34973773,"wgIsArticle":true,"wgIsRedirect":false,"wgAction":"view","wgUserName":null,"wgUserGroups":["*"],"wgCategories":["All articles with dead external links","Articles with dead external links from June 2019","Articles with permanently dead external links","Articles with short description","Short description matches Wikidata","Use dmy dates from August 2024","Web browsers","Web security exploits","Internet security"],"wgPageViewLanguage":"en","wgPageContentLanguage":"en","wgPageContentModel":"wikitext","wgRelevantPageName":"Browser_security","wgRelevantArticleId":34973773, "wgIsProbablyEditable":true,"wgRelevantPageIsProbablyEditable":true,"wgRestrictionEdit":[],"wgRestrictionMove":[],"wgNoticeProject":"wikipedia","wgCiteReferencePreviewsActive":false,"wgFlaggedRevsParams":{"tags":{"status":{"levels":1}}},"wgMediaViewerOnClick":true,"wgMediaViewerEnabledByDefault":true,"wgPopupsFlags":0,"wgVisualEditor":{"pageLanguageCode":"en","pageLanguageDir":"ltr","pageVariantFallbacks":"en"},"wgMFDisplayWikibaseDescriptions":{"search":true,"watchlist":true,"tagline":false,"nearby":true},"wgWMESchemaEditAttemptStepOversample":false,"wgWMEPageLength":30000,"wgEditSubmitButtonLabelPublish":true,"wgULSPosition":"interlanguage","wgULSisCompactLinksEnabled":false,"wgVector2022LanguageInHeader":true,"wgULSisLanguageSelectorEmpty":false,"wgWikibaseItemId":"Q4976859","wgCheckUserClientHintsHeadersJsApi":["brands","architecture","bitness","fullVersionList","mobile","model","platform","platformVersion"],"GEHomepageSuggestedEditsEnableTopics":true,"wgGETopicsMatchModeEnabled": false,"wgGEStructuredTaskRejectionReasonTextInputEnabled":false,"wgGELevelingUpEnabledForUser":false};RLSTATE={"ext.globalCssJs.user.styles":"ready","site.styles":"ready","user.styles":"ready","ext.globalCssJs.user":"ready","user":"ready","user.options":"loading","ext.cite.styles":"ready","skins.vector.search.codex.styles":"ready","skins.vector.styles":"ready","skins.vector.icons":"ready","jquery.makeCollapsible.styles":"ready","ext.wikimediamessages.styles":"ready","ext.visualEditor.desktopArticleTarget.noscript":"ready","ext.uls.interlanguage":"ready","wikibase.client.init":"ready","ext.wikimediaBadges":"ready"};RLPAGEMODULES=["ext.cite.ux-enhancements","site","mediawiki.page.ready","jquery.makeCollapsible","mediawiki.toc","skins.vector.js","ext.centralNotice.geoIP","ext.centralNotice.startUp","ext.gadget.ReferenceTooltips","ext.gadget.switcher","ext.urlShortener.toolbar","ext.centralauth.centralautologin","ext.popups","ext.visualEditor.desktopArticleTarget.init", "ext.visualEditor.targetLoader","ext.echo.centralauth","ext.eventLogging","ext.wikimediaEvents","ext.navigationTiming","ext.uls.interface","ext.cx.eventlogging.campaigns","ext.cx.uls.quick.actions","wikibase.client.vector-2022","ext.checkUser.clientHints","ext.growthExperiments.SuggestedEditSession"];</script> <script>(RLQ=window.RLQ||[]).push(function(){mw.loader.impl(function(){return["user.options@12s5i",function($,jQuery,require,module){mw.user.tokens.set({"patrolToken":"+\\","watchToken":"+\\","csrfToken":"+\\"}); }];});});</script> <link rel="stylesheet" href="/w/load.php?lang=en&amp;modules=ext.cite.styles%7Cext.uls.interlanguage%7Cext.visualEditor.desktopArticleTarget.noscript%7Cext.wikimediaBadges%7Cext.wikimediamessages.styles%7Cjquery.makeCollapsible.styles%7Cskins.vector.icons%2Cstyles%7Cskins.vector.search.codex.styles%7Cwikibase.client.init&amp;only=styles&amp;skin=vector-2022"> <script async="" src="/w/load.php?lang=en&amp;modules=startup&amp;only=scripts&amp;raw=1&amp;skin=vector-2022"></script> <meta name="ResourceLoaderDynamicStyles" content=""> <link rel="stylesheet" href="/w/load.php?lang=en&amp;modules=site.styles&amp;only=styles&amp;skin=vector-2022"> <meta name="generator" content="MediaWiki 1.44.0-wmf.16"> <meta name="referrer" content="origin"> <meta name="referrer" content="origin-when-cross-origin"> <meta name="robots" content="max-image-preview:standard"> <meta name="format-detection" content="telephone=no"> <meta name="viewport" content="width=1120"> <meta property="og:title" content="Browser security - Wikipedia"> <meta property="og:type" content="website"> <link rel="alternate" media="only screen and (max-width: 640px)" href="//en.m.wikipedia.org/wiki/Browser_security"> <link rel="alternate" type="application/x-wiki" title="Edit this page" href="/w/index.php?title=Browser_security&amp;action=edit"> <link rel="apple-touch-icon" href="/static/apple-touch/wikipedia.png"> <link rel="icon" href="/static/favicon/wikipedia.ico"> <link rel="search" type="application/opensearchdescription+xml" href="/w/rest.php/v1/search" title="Wikipedia (en)"> <link rel="EditURI" type="application/rsd+xml" href="//en.wikipedia.org/w/api.php?action=rsd"> <link rel="canonical" href="https://en.wikipedia.org/wiki/Browser_security"> <link rel="license" href="https://creativecommons.org/licenses/by-sa/4.0/deed.en"> <link rel="alternate" type="application/atom+xml" title="Wikipedia Atom feed" href="/w/index.php?title=Special:RecentChanges&amp;feed=atom"> <link rel="dns-prefetch" href="//meta.wikimedia.org" /> <link rel="dns-prefetch" href="login.wikimedia.org"> </head> <body class="skin--responsive skin-vector skin-vector-search-vue mediawiki ltr sitedir-ltr mw-hide-empty-elt ns-0 ns-subject mw-editable page-Browser_security rootpage-Browser_security skin-vector-2022 action-view"><a class="mw-jump-link" href="#bodyContent">Jump to content</a> <div class="vector-header-container"> <header class="vector-header mw-header"> <div class="vector-header-start"> <nav class="vector-main-menu-landmark" aria-label="Site"> <div id="vector-main-menu-dropdown" class="vector-dropdown vector-main-menu-dropdown vector-button-flush-left vector-button-flush-right" title="Main menu" > <input type="checkbox" id="vector-main-menu-dropdown-checkbox" role="button" aria-haspopup="true" data-event-name="ui.dropdown-vector-main-menu-dropdown" class="vector-dropdown-checkbox " aria-label="Main menu" > <label id="vector-main-menu-dropdown-label" for="vector-main-menu-dropdown-checkbox" class="vector-dropdown-label cdx-button cdx-button--fake-button cdx-button--fake-button--enabled cdx-button--weight-quiet cdx-button--icon-only " aria-hidden="true" ><span class="vector-icon mw-ui-icon-menu mw-ui-icon-wikimedia-menu"></span> <span class="vector-dropdown-label-text">Main menu</span> </label> <div class="vector-dropdown-content"> <div id="vector-main-menu-unpinned-container" class="vector-unpinned-container"> <div id="vector-main-menu" class="vector-main-menu vector-pinnable-element"> <div class="vector-pinnable-header vector-main-menu-pinnable-header vector-pinnable-header-unpinned" data-feature-name="main-menu-pinned" data-pinnable-element-id="vector-main-menu" data-pinned-container-id="vector-main-menu-pinned-container" data-unpinned-container-id="vector-main-menu-unpinned-container" > <div class="vector-pinnable-header-label">Main menu</div> <button class="vector-pinnable-header-toggle-button vector-pinnable-header-pin-button" data-event-name="pinnable-header.vector-main-menu.pin">move to sidebar</button> <button class="vector-pinnable-header-toggle-button vector-pinnable-header-unpin-button" data-event-name="pinnable-header.vector-main-menu.unpin">hide</button> </div> <div id="p-navigation" class="vector-menu mw-portlet mw-portlet-navigation" > <div class="vector-menu-heading"> Navigation </div> <div class="vector-menu-content"> <ul class="vector-menu-content-list"> <li id="n-mainpage-description" class="mw-list-item"><a href="/wiki/Main_Page" title="Visit the main page [z]" accesskey="z"><span>Main page</span></a></li><li id="n-contents" class="mw-list-item"><a href="/wiki/Wikipedia:Contents" title="Guides to browsing Wikipedia"><span>Contents</span></a></li><li id="n-currentevents" class="mw-list-item"><a href="/wiki/Portal:Current_events" title="Articles related to current events"><span>Current events</span></a></li><li id="n-randompage" class="mw-list-item"><a href="/wiki/Special:Random" title="Visit a randomly selected article [x]" accesskey="x"><span>Random article</span></a></li><li id="n-aboutsite" class="mw-list-item"><a href="/wiki/Wikipedia:About" title="Learn about Wikipedia and how it works"><span>About Wikipedia</span></a></li><li id="n-contactpage" class="mw-list-item"><a href="//en.wikipedia.org/wiki/Wikipedia:Contact_us" title="How to contact Wikipedia"><span>Contact us</span></a></li> </ul> </div> </div> <div id="p-interaction" class="vector-menu mw-portlet mw-portlet-interaction" > <div class="vector-menu-heading"> Contribute </div> <div class="vector-menu-content"> <ul class="vector-menu-content-list"> <li id="n-help" class="mw-list-item"><a href="/wiki/Help:Contents" title="Guidance on how to use and edit Wikipedia"><span>Help</span></a></li><li id="n-introduction" class="mw-list-item"><a href="/wiki/Help:Introduction" title="Learn how to edit Wikipedia"><span>Learn to edit</span></a></li><li id="n-portal" class="mw-list-item"><a href="/wiki/Wikipedia:Community_portal" title="The hub for editors"><span>Community portal</span></a></li><li id="n-recentchanges" class="mw-list-item"><a href="/wiki/Special:RecentChanges" title="A list of recent changes to Wikipedia [r]" accesskey="r"><span>Recent changes</span></a></li><li id="n-upload" class="mw-list-item"><a href="/wiki/Wikipedia:File_upload_wizard" title="Add images or other media for use on Wikipedia"><span>Upload file</span></a></li><li id="n-specialpages" class="mw-list-item"><a href="/wiki/Special:SpecialPages"><span>Special pages</span></a></li> </ul> </div> </div> </div> </div> </div> </div> </nav> <a href="/wiki/Main_Page" class="mw-logo"> <img class="mw-logo-icon" src="/static/images/icons/wikipedia.png" alt="" aria-hidden="true" height="50" width="50"> <span class="mw-logo-container skin-invert"> <img class="mw-logo-wordmark" alt="Wikipedia" src="/static/images/mobile/copyright/wikipedia-wordmark-en.svg" style="width: 7.5em; height: 1.125em;"> <img class="mw-logo-tagline" alt="The Free Encyclopedia" src="/static/images/mobile/copyright/wikipedia-tagline-en.svg" width="117" height="13" style="width: 7.3125em; height: 0.8125em;"> </span> </a> </div> <div class="vector-header-end"> <div id="p-search" role="search" class="vector-search-box-vue vector-search-box-collapses vector-search-box-show-thumbnail vector-search-box-auto-expand-width vector-search-box"> <a href="/wiki/Special:Search" class="cdx-button cdx-button--fake-button cdx-button--fake-button--enabled cdx-button--weight-quiet cdx-button--icon-only search-toggle" title="Search Wikipedia [f]" accesskey="f"><span class="vector-icon mw-ui-icon-search mw-ui-icon-wikimedia-search"></span> <span>Search</span> </a> <div class="vector-typeahead-search-container"> <div class="cdx-typeahead-search cdx-typeahead-search--show-thumbnail cdx-typeahead-search--auto-expand-width"> <form action="/w/index.php" id="searchform" class="cdx-search-input cdx-search-input--has-end-button"> <div id="simpleSearch" class="cdx-search-input__input-wrapper" data-search-loc="header-moved"> <div class="cdx-text-input cdx-text-input--has-start-icon"> <input class="cdx-text-input__input" type="search" name="search" placeholder="Search Wikipedia" aria-label="Search Wikipedia" autocapitalize="sentences" title="Search Wikipedia [f]" accesskey="f" id="searchInput" > <span class="cdx-text-input__icon cdx-text-input__start-icon"></span> </div> <input type="hidden" name="title" value="Special:Search"> </div> <button class="cdx-button cdx-search-input__end-button">Search</button> </form> </div> </div> </div> <nav class="vector-user-links vector-user-links-wide" aria-label="Personal tools"> <div class="vector-user-links-main"> <div id="p-vector-user-menu-preferences" class="vector-menu mw-portlet emptyPortlet" > <div class="vector-menu-content"> <ul class="vector-menu-content-list"> </ul> </div> </div> <div id="p-vector-user-menu-userpage" class="vector-menu mw-portlet emptyPortlet" > <div class="vector-menu-content"> <ul class="vector-menu-content-list"> </ul> </div> </div> <nav class="vector-appearance-landmark" aria-label="Appearance"> <div id="vector-appearance-dropdown" class="vector-dropdown " title="Change the appearance of the page&#039;s font size, width, and color" > <input type="checkbox" id="vector-appearance-dropdown-checkbox" role="button" aria-haspopup="true" data-event-name="ui.dropdown-vector-appearance-dropdown" class="vector-dropdown-checkbox " aria-label="Appearance" > <label id="vector-appearance-dropdown-label" for="vector-appearance-dropdown-checkbox" class="vector-dropdown-label cdx-button cdx-button--fake-button cdx-button--fake-button--enabled cdx-button--weight-quiet cdx-button--icon-only " aria-hidden="true" ><span class="vector-icon mw-ui-icon-appearance mw-ui-icon-wikimedia-appearance"></span> <span class="vector-dropdown-label-text">Appearance</span> </label> <div class="vector-dropdown-content"> <div id="vector-appearance-unpinned-container" class="vector-unpinned-container"> </div> </div> </div> </nav> <div id="p-vector-user-menu-notifications" class="vector-menu mw-portlet emptyPortlet" > <div class="vector-menu-content"> <ul class="vector-menu-content-list"> </ul> </div> </div> <div id="p-vector-user-menu-overflow" class="vector-menu mw-portlet" > <div class="vector-menu-content"> <ul class="vector-menu-content-list"> <li id="pt-sitesupport-2" class="user-links-collapsible-item mw-list-item user-links-collapsible-item"><a data-mw="interface" href="https://donate.wikimedia.org/?wmf_source=donate&amp;wmf_medium=sidebar&amp;wmf_campaign=en.wikipedia.org&amp;uselang=en" class=""><span>Donate</span></a> </li> <li id="pt-createaccount-2" class="user-links-collapsible-item mw-list-item user-links-collapsible-item"><a data-mw="interface" href="/w/index.php?title=Special:CreateAccount&amp;returnto=Browser+security" title="You are encouraged to create an account and log in; however, it is not mandatory" class=""><span>Create account</span></a> </li> <li id="pt-login-2" class="user-links-collapsible-item mw-list-item user-links-collapsible-item"><a data-mw="interface" href="/w/index.php?title=Special:UserLogin&amp;returnto=Browser+security" title="You&#039;re encouraged to log in; however, it&#039;s not mandatory. [o]" accesskey="o" class=""><span>Log in</span></a> </li> </ul> </div> </div> </div> <div id="vector-user-links-dropdown" class="vector-dropdown vector-user-menu vector-button-flush-right vector-user-menu-logged-out" title="Log in and more options" > <input type="checkbox" id="vector-user-links-dropdown-checkbox" role="button" aria-haspopup="true" data-event-name="ui.dropdown-vector-user-links-dropdown" class="vector-dropdown-checkbox " aria-label="Personal tools" > <label id="vector-user-links-dropdown-label" for="vector-user-links-dropdown-checkbox" class="vector-dropdown-label cdx-button cdx-button--fake-button cdx-button--fake-button--enabled cdx-button--weight-quiet cdx-button--icon-only " aria-hidden="true" ><span class="vector-icon mw-ui-icon-ellipsis mw-ui-icon-wikimedia-ellipsis"></span> <span class="vector-dropdown-label-text">Personal tools</span> </label> <div class="vector-dropdown-content"> <div id="p-personal" class="vector-menu mw-portlet mw-portlet-personal user-links-collapsible-item" title="User menu" > <div class="vector-menu-content"> <ul class="vector-menu-content-list"> <li id="pt-sitesupport" class="user-links-collapsible-item mw-list-item"><a href="https://donate.wikimedia.org/?wmf_source=donate&amp;wmf_medium=sidebar&amp;wmf_campaign=en.wikipedia.org&amp;uselang=en"><span>Donate</span></a></li><li id="pt-createaccount" class="user-links-collapsible-item mw-list-item"><a href="/w/index.php?title=Special:CreateAccount&amp;returnto=Browser+security" title="You are encouraged to create an account and log in; however, it is not mandatory"><span class="vector-icon mw-ui-icon-userAdd mw-ui-icon-wikimedia-userAdd"></span> <span>Create account</span></a></li><li id="pt-login" class="user-links-collapsible-item mw-list-item"><a href="/w/index.php?title=Special:UserLogin&amp;returnto=Browser+security" title="You&#039;re encouraged to log in; however, it&#039;s not mandatory. [o]" accesskey="o"><span class="vector-icon mw-ui-icon-logIn mw-ui-icon-wikimedia-logIn"></span> <span>Log in</span></a></li> </ul> </div> </div> <div id="p-user-menu-anon-editor" class="vector-menu mw-portlet mw-portlet-user-menu-anon-editor" > <div class="vector-menu-heading"> Pages for logged out editors <a href="/wiki/Help:Introduction" aria-label="Learn more about editing"><span>learn more</span></a> </div> <div class="vector-menu-content"> <ul class="vector-menu-content-list"> <li id="pt-anoncontribs" class="mw-list-item"><a href="/wiki/Special:MyContributions" title="A list of edits made from this IP address [y]" accesskey="y"><span>Contributions</span></a></li><li id="pt-anontalk" class="mw-list-item"><a href="/wiki/Special:MyTalk" title="Discussion about edits from this IP address [n]" accesskey="n"><span>Talk</span></a></li> </ul> </div> </div> </div> </div> </nav> </div> </header> </div> <div class="mw-page-container"> <div class="mw-page-container-inner"> <div class="vector-sitenotice-container"> <div id="siteNotice"><!-- CentralNotice --></div> </div> <div class="vector-column-start"> <div class="vector-main-menu-container"> <div id="mw-navigation"> <nav id="mw-panel" class="vector-main-menu-landmark" aria-label="Site"> <div id="vector-main-menu-pinned-container" class="vector-pinned-container"> </div> </nav> </div> </div> <div class="vector-sticky-pinned-container"> <nav id="mw-panel-toc" aria-label="Contents" data-event-name="ui.sidebar-toc" class="mw-table-of-contents-container vector-toc-landmark"> <div id="vector-toc-pinned-container" class="vector-pinned-container"> <div id="vector-toc" class="vector-toc vector-pinnable-element"> <div class="vector-pinnable-header vector-toc-pinnable-header vector-pinnable-header-pinned" data-feature-name="toc-pinned" data-pinnable-element-id="vector-toc" > <h2 class="vector-pinnable-header-label">Contents</h2> <button class="vector-pinnable-header-toggle-button vector-pinnable-header-pin-button" data-event-name="pinnable-header.vector-toc.pin">move to sidebar</button> <button class="vector-pinnable-header-toggle-button vector-pinnable-header-unpin-button" data-event-name="pinnable-header.vector-toc.unpin">hide</button> </div> <ul class="vector-toc-contents" id="mw-panel-toc-list"> <li id="toc-mw-content-text" class="vector-toc-list-item vector-toc-level-1"> <a href="#" class="vector-toc-link"> <div class="vector-toc-text">(Top)</div> </a> </li> <li id="toc-History" class="vector-toc-list-item vector-toc-level-1 vector-toc-list-item-expanded"> <a class="vector-toc-link" href="#History"> <div class="vector-toc-text"> <span class="vector-toc-numb">1</span> <span>History</span> </div> </a> <ul id="toc-History-sublist" class="vector-toc-list"> </ul> </li> <li id="toc-Security" class="vector-toc-list-item vector-toc-level-1 vector-toc-list-item-expanded"> <a class="vector-toc-link" href="#Security"> <div class="vector-toc-text"> <span class="vector-toc-numb">2</span> <span>Security</span> </div> </a> <button aria-controls="toc-Security-sublist" class="cdx-button cdx-button--weight-quiet cdx-button--icon-only vector-toc-toggle"> <span class="vector-icon mw-ui-icon-wikimedia-expand"></span> <span>Toggle Security subsection</span> </button> <ul id="toc-Security-sublist" class="vector-toc-list"> <li id="toc-Plugins_and_extensions" class="vector-toc-list-item vector-toc-level-2"> <a class="vector-toc-link" href="#Plugins_and_extensions"> <div class="vector-toc-text"> <span class="vector-toc-numb">2.1</span> <span>Plugins and extensions</span> </div> </a> <ul id="toc-Plugins_and_extensions-sublist" class="vector-toc-list"> </ul> </li> <li id="toc-Adobe_Flash" class="vector-toc-list-item vector-toc-level-2"> <a class="vector-toc-link" href="#Adobe_Flash"> <div class="vector-toc-text"> <span class="vector-toc-numb">2.2</span> <span>Adobe Flash</span> </div> </a> <ul id="toc-Adobe_Flash-sublist" class="vector-toc-list"> </ul> </li> </ul> </li> <li id="toc-Password_security_model" class="vector-toc-list-item vector-toc-level-1 vector-toc-list-item-expanded"> <a class="vector-toc-link" href="#Password_security_model"> <div class="vector-toc-text"> <span class="vector-toc-numb">3</span> <span>Password security model</span> </div> </a> <ul id="toc-Password_security_model-sublist" class="vector-toc-list"> </ul> </li> <li id="toc-Browser_hardening" class="vector-toc-list-item vector-toc-level-1 vector-toc-list-item-expanded"> <a class="vector-toc-link" href="#Browser_hardening"> <div class="vector-toc-text"> <span class="vector-toc-numb">4</span> <span>Browser hardening</span> </div> </a> <ul id="toc-Browser_hardening-sublist" class="vector-toc-list"> </ul> </li> <li id="toc-Fuzzing" class="vector-toc-list-item vector-toc-level-1 vector-toc-list-item-expanded"> <a class="vector-toc-link" href="#Fuzzing"> <div class="vector-toc-text"> <span class="vector-toc-numb">5</span> <span>Fuzzing</span> </div> </a> <ul id="toc-Fuzzing-sublist" class="vector-toc-list"> </ul> </li> <li id="toc-See_also" class="vector-toc-list-item vector-toc-level-1 vector-toc-list-item-expanded"> <a class="vector-toc-link" href="#See_also"> <div class="vector-toc-text"> <span class="vector-toc-numb">6</span> <span>See also</span> </div> </a> <ul id="toc-See_also-sublist" class="vector-toc-list"> </ul> </li> <li id="toc-References" class="vector-toc-list-item vector-toc-level-1 vector-toc-list-item-expanded"> <a class="vector-toc-link" href="#References"> <div class="vector-toc-text"> <span class="vector-toc-numb">7</span> <span>References</span> </div> </a> <ul id="toc-References-sublist" class="vector-toc-list"> </ul> </li> <li id="toc-Further_reading" class="vector-toc-list-item vector-toc-level-1 vector-toc-list-item-expanded"> <a class="vector-toc-link" href="#Further_reading"> <div class="vector-toc-text"> <span class="vector-toc-numb">8</span> <span>Further reading</span> </div> </a> <ul id="toc-Further_reading-sublist" class="vector-toc-list"> </ul> </li> </ul> </div> </div> </nav> </div> </div> <div class="mw-content-container"> <main id="content" class="mw-body"> <header class="mw-body-header vector-page-titlebar"> <nav aria-label="Contents" class="vector-toc-landmark"> <div id="vector-page-titlebar-toc" class="vector-dropdown vector-page-titlebar-toc vector-button-flush-left" title="Table of Contents" > <input type="checkbox" id="vector-page-titlebar-toc-checkbox" role="button" aria-haspopup="true" data-event-name="ui.dropdown-vector-page-titlebar-toc" class="vector-dropdown-checkbox " aria-label="Toggle the table of contents" > <label id="vector-page-titlebar-toc-label" for="vector-page-titlebar-toc-checkbox" class="vector-dropdown-label cdx-button cdx-button--fake-button cdx-button--fake-button--enabled cdx-button--weight-quiet cdx-button--icon-only " aria-hidden="true" ><span class="vector-icon mw-ui-icon-listBullet mw-ui-icon-wikimedia-listBullet"></span> <span class="vector-dropdown-label-text">Toggle the table of contents</span> </label> <div class="vector-dropdown-content"> <div id="vector-page-titlebar-toc-unpinned-container" class="vector-unpinned-container"> </div> </div> </div> </nav> <h1 id="firstHeading" class="firstHeading mw-first-heading"><span class="mw-page-title-main">Browser security</span></h1> <div id="p-lang-btn" class="vector-dropdown mw-portlet mw-portlet-lang" > <input type="checkbox" id="p-lang-btn-checkbox" role="button" aria-haspopup="true" data-event-name="ui.dropdown-p-lang-btn" class="vector-dropdown-checkbox mw-interlanguage-selector" aria-label="Go to an article in another language. Available in 10 languages" > <label id="p-lang-btn-label" for="p-lang-btn-checkbox" class="vector-dropdown-label cdx-button cdx-button--fake-button cdx-button--fake-button--enabled cdx-button--weight-quiet cdx-button--action-progressive mw-portlet-lang-heading-10" aria-hidden="true" ><span class="vector-icon mw-ui-icon-language-progressive mw-ui-icon-wikimedia-language-progressive"></span> <span class="vector-dropdown-label-text">10 languages</span> </label> <div class="vector-dropdown-content"> <div class="vector-menu-content"> <ul class="vector-menu-content-list"> <li class="interlanguage-link interwiki-ar mw-list-item"><a href="https://ar.wikipedia.org/wiki/%D8%A3%D9%85%D8%A7%D9%86_%D8%A7%D9%84%D9%85%D8%AA%D8%B5%D9%81%D8%AD" title="أمان المتصفح – Arabic" lang="ar" hreflang="ar" data-title="أمان المتصفح" data-language-autonym="العربية" data-language-local-name="Arabic" class="interlanguage-link-target"><span>العربية</span></a></li><li class="interlanguage-link interwiki-bg mw-list-item"><a href="https://bg.wikipedia.org/wiki/%D0%A1%D0%B8%D0%B3%D1%83%D1%80%D0%BD%D0%BE%D1%81%D1%82_%D0%BD%D0%B0_%D0%B1%D1%80%D0%B0%D1%83%D0%B7%D1%8A%D1%80%D0%B0" title="Сигурност на браузъра – Bulgarian" lang="bg" hreflang="bg" data-title="Сигурност на браузъра" data-language-autonym="Български" data-language-local-name="Bulgarian" class="interlanguage-link-target"><span>Български</span></a></li><li class="interlanguage-link interwiki-cs mw-list-item"><a href="https://cs.wikipedia.org/wiki/Zabezpe%C4%8Den%C3%AD_prohl%C3%AD%C5%BEe%C4%8De" title="Zabezpečení prohlížeče – Czech" lang="cs" hreflang="cs" data-title="Zabezpečení prohlížeče" data-language-autonym="Čeština" data-language-local-name="Czech" class="interlanguage-link-target"><span>Čeština</span></a></li><li class="interlanguage-link interwiki-es mw-list-item"><a href="https://es.wikipedia.org/wiki/Seguridad_del_navegador" title="Seguridad del navegador – Spanish" lang="es" hreflang="es" data-title="Seguridad del navegador" data-language-autonym="Español" data-language-local-name="Spanish" class="interlanguage-link-target"><span>Español</span></a></li><li class="interlanguage-link interwiki-fa mw-list-item"><a href="https://fa.wikipedia.org/wiki/%D8%A7%D9%85%D9%86%DB%8C%D8%AA_%D9%85%D8%B1%D9%88%D8%B1%DA%AF%D8%B1" title="امنیت مرورگر – Persian" lang="fa" hreflang="fa" data-title="امنیت مرورگر" data-language-autonym="فارسی" data-language-local-name="Persian" class="interlanguage-link-target"><span>فارسی</span></a></li><li class="interlanguage-link interwiki-ko mw-list-item"><a href="https://ko.wikipedia.org/wiki/%EB%B8%8C%EB%9D%BC%EC%9A%B0%EC%A0%80_%EB%B3%B4%EC%95%88" title="브라우저 보안 – Korean" lang="ko" hreflang="ko" data-title="브라우저 보안" data-language-autonym="한국어" data-language-local-name="Korean" class="interlanguage-link-target"><span>한국어</span></a></li><li class="interlanguage-link interwiki-ro mw-list-item"><a href="https://ro.wikipedia.org/wiki/Securitatea_navigatorului_web" title="Securitatea navigatorului web – Romanian" lang="ro" hreflang="ro" data-title="Securitatea navigatorului web" data-language-autonym="Română" data-language-local-name="Romanian" class="interlanguage-link-target"><span>Română</span></a></li><li class="interlanguage-link interwiki-ru mw-list-item"><a href="https://ru.wikipedia.org/wiki/%D0%91%D0%B5%D0%B7%D0%BE%D0%BF%D0%B0%D1%81%D0%BD%D0%BE%D1%81%D1%82%D1%8C_%D0%B1%D1%80%D0%B0%D1%83%D0%B7%D0%B5%D1%80%D0%B0" title="Безопасность браузера – Russian" lang="ru" hreflang="ru" data-title="Безопасность браузера" data-language-autonym="Русский" data-language-local-name="Russian" class="interlanguage-link-target"><span>Русский</span></a></li><li class="interlanguage-link interwiki-tr mw-list-item"><a href="https://tr.wikipedia.org/wiki/Taray%C4%B1c%C4%B1_g%C3%BCvenli%C4%9Fi" title="Tarayıcı güvenliği – Turkish" lang="tr" hreflang="tr" data-title="Tarayıcı güvenliği" data-language-autonym="Türkçe" data-language-local-name="Turkish" class="interlanguage-link-target"><span>Türkçe</span></a></li><li class="interlanguage-link interwiki-uk mw-list-item"><a href="https://uk.wikipedia.org/wiki/%D0%91%D0%B5%D0%B7%D0%BF%D0%B5%D0%BA%D0%B0_%D0%B1%D1%80%D0%B0%D1%83%D0%B7%D0%B5%D1%80%D0%B0" title="Безпека браузера – Ukrainian" lang="uk" hreflang="uk" data-title="Безпека браузера" data-language-autonym="Українська" data-language-local-name="Ukrainian" class="interlanguage-link-target"><span>Українська</span></a></li> </ul> <div class="after-portlet after-portlet-lang"><span class="wb-langlinks-edit wb-langlinks-link"><a href="https://www.wikidata.org/wiki/Special:EntityPage/Q4976859#sitelinks-wikipedia" title="Edit interlanguage links" class="wbc-editpage">Edit links</a></span></div> </div> </div> </div> </header> <div class="vector-page-toolbar"> <div class="vector-page-toolbar-container"> <div id="left-navigation"> <nav aria-label="Namespaces"> <div id="p-associated-pages" class="vector-menu vector-menu-tabs mw-portlet mw-portlet-associated-pages" > <div class="vector-menu-content"> <ul class="vector-menu-content-list"> <li id="ca-nstab-main" class="selected vector-tab-noicon mw-list-item"><a href="/wiki/Browser_security" title="View the content page [c]" accesskey="c"><span>Article</span></a></li><li id="ca-talk" class="vector-tab-noicon mw-list-item"><a href="/wiki/Talk:Browser_security" rel="discussion" title="Discuss improvements to the content page [t]" accesskey="t"><span>Talk</span></a></li> </ul> </div> </div> <div id="vector-variants-dropdown" class="vector-dropdown emptyPortlet" > <input type="checkbox" id="vector-variants-dropdown-checkbox" role="button" aria-haspopup="true" data-event-name="ui.dropdown-vector-variants-dropdown" class="vector-dropdown-checkbox " aria-label="Change language variant" > <label id="vector-variants-dropdown-label" for="vector-variants-dropdown-checkbox" class="vector-dropdown-label cdx-button cdx-button--fake-button cdx-button--fake-button--enabled cdx-button--weight-quiet" aria-hidden="true" ><span class="vector-dropdown-label-text">English</span> </label> <div class="vector-dropdown-content"> <div id="p-variants" class="vector-menu mw-portlet mw-portlet-variants emptyPortlet" > <div class="vector-menu-content"> <ul class="vector-menu-content-list"> </ul> </div> </div> </div> </div> </nav> </div> <div id="right-navigation" class="vector-collapsible"> <nav aria-label="Views"> <div id="p-views" class="vector-menu vector-menu-tabs mw-portlet mw-portlet-views" > <div class="vector-menu-content"> <ul class="vector-menu-content-list"> <li id="ca-view" class="selected vector-tab-noicon mw-list-item"><a href="/wiki/Browser_security"><span>Read</span></a></li><li id="ca-edit" class="vector-tab-noicon mw-list-item"><a href="/w/index.php?title=Browser_security&amp;action=edit" title="Edit this page [e]" accesskey="e"><span>Edit</span></a></li><li id="ca-history" class="vector-tab-noicon mw-list-item"><a href="/w/index.php?title=Browser_security&amp;action=history" title="Past revisions of this page [h]" accesskey="h"><span>View history</span></a></li> </ul> </div> </div> </nav> <nav class="vector-page-tools-landmark" aria-label="Page tools"> <div id="vector-page-tools-dropdown" class="vector-dropdown vector-page-tools-dropdown" > <input type="checkbox" id="vector-page-tools-dropdown-checkbox" role="button" aria-haspopup="true" data-event-name="ui.dropdown-vector-page-tools-dropdown" class="vector-dropdown-checkbox " aria-label="Tools" > <label id="vector-page-tools-dropdown-label" for="vector-page-tools-dropdown-checkbox" class="vector-dropdown-label cdx-button cdx-button--fake-button cdx-button--fake-button--enabled cdx-button--weight-quiet" aria-hidden="true" ><span class="vector-dropdown-label-text">Tools</span> </label> <div class="vector-dropdown-content"> <div id="vector-page-tools-unpinned-container" class="vector-unpinned-container"> <div id="vector-page-tools" class="vector-page-tools vector-pinnable-element"> <div class="vector-pinnable-header vector-page-tools-pinnable-header vector-pinnable-header-unpinned" data-feature-name="page-tools-pinned" data-pinnable-element-id="vector-page-tools" data-pinned-container-id="vector-page-tools-pinned-container" data-unpinned-container-id="vector-page-tools-unpinned-container" > <div class="vector-pinnable-header-label">Tools</div> <button class="vector-pinnable-header-toggle-button vector-pinnable-header-pin-button" data-event-name="pinnable-header.vector-page-tools.pin">move to sidebar</button> <button class="vector-pinnable-header-toggle-button vector-pinnable-header-unpin-button" data-event-name="pinnable-header.vector-page-tools.unpin">hide</button> </div> <div id="p-cactions" class="vector-menu mw-portlet mw-portlet-cactions emptyPortlet vector-has-collapsible-items" title="More options" > <div class="vector-menu-heading"> Actions </div> <div class="vector-menu-content"> <ul class="vector-menu-content-list"> <li id="ca-more-view" class="selected vector-more-collapsible-item mw-list-item"><a href="/wiki/Browser_security"><span>Read</span></a></li><li id="ca-more-edit" class="vector-more-collapsible-item mw-list-item"><a href="/w/index.php?title=Browser_security&amp;action=edit" title="Edit this page [e]" accesskey="e"><span>Edit</span></a></li><li id="ca-more-history" class="vector-more-collapsible-item mw-list-item"><a href="/w/index.php?title=Browser_security&amp;action=history"><span>View history</span></a></li> </ul> </div> </div> <div id="p-tb" class="vector-menu mw-portlet mw-portlet-tb" > <div class="vector-menu-heading"> General </div> <div class="vector-menu-content"> <ul class="vector-menu-content-list"> <li id="t-whatlinkshere" class="mw-list-item"><a href="/wiki/Special:WhatLinksHere/Browser_security" title="List of all English Wikipedia pages containing links to this page [j]" accesskey="j"><span>What links here</span></a></li><li id="t-recentchangeslinked" class="mw-list-item"><a href="/wiki/Special:RecentChangesLinked/Browser_security" rel="nofollow" title="Recent changes in pages linked from this page [k]" accesskey="k"><span>Related changes</span></a></li><li id="t-upload" class="mw-list-item"><a href="//en.wikipedia.org/wiki/Wikipedia:File_Upload_Wizard" title="Upload files [u]" accesskey="u"><span>Upload file</span></a></li><li id="t-permalink" class="mw-list-item"><a href="/w/index.php?title=Browser_security&amp;oldid=1274929835" title="Permanent link to this revision of this page"><span>Permanent link</span></a></li><li id="t-info" class="mw-list-item"><a href="/w/index.php?title=Browser_security&amp;action=info" title="More information about this page"><span>Page information</span></a></li><li id="t-cite" class="mw-list-item"><a href="/w/index.php?title=Special:CiteThisPage&amp;page=Browser_security&amp;id=1274929835&amp;wpFormIdentifier=titleform" title="Information on how to cite this page"><span>Cite this page</span></a></li><li id="t-urlshortener" class="mw-list-item"><a href="/w/index.php?title=Special:UrlShortener&amp;url=https%3A%2F%2Fen.wikipedia.org%2Fwiki%2FBrowser_security"><span>Get shortened URL</span></a></li><li id="t-urlshortener-qrcode" class="mw-list-item"><a href="/w/index.php?title=Special:QrCode&amp;url=https%3A%2F%2Fen.wikipedia.org%2Fwiki%2FBrowser_security"><span>Download QR code</span></a></li> </ul> </div> </div> <div id="p-coll-print_export" class="vector-menu mw-portlet mw-portlet-coll-print_export" > <div class="vector-menu-heading"> Print/export </div> <div class="vector-menu-content"> <ul class="vector-menu-content-list"> <li id="coll-download-as-rl" class="mw-list-item"><a href="/w/index.php?title=Special:DownloadAsPdf&amp;page=Browser_security&amp;action=show-download-screen" title="Download this page as a PDF file"><span>Download as PDF</span></a></li><li id="t-print" class="mw-list-item"><a href="/w/index.php?title=Browser_security&amp;printable=yes" title="Printable version of this page [p]" accesskey="p"><span>Printable version</span></a></li> </ul> </div> </div> <div id="p-wikibase-otherprojects" class="vector-menu mw-portlet mw-portlet-wikibase-otherprojects" > <div class="vector-menu-heading"> In other projects </div> <div class="vector-menu-content"> <ul class="vector-menu-content-list"> <li id="t-wikibase" class="wb-otherproject-link wb-otherproject-wikibase-dataitem mw-list-item"><a href="https://www.wikidata.org/wiki/Special:EntityPage/Q4976859" title="Structured data on this page hosted by Wikidata [g]" accesskey="g"><span>Wikidata item</span></a></li> </ul> </div> </div> </div> </div> </div> </div> </nav> </div> </div> </div> <div class="vector-column-end"> <div class="vector-sticky-pinned-container"> <nav class="vector-page-tools-landmark" aria-label="Page tools"> <div id="vector-page-tools-pinned-container" class="vector-pinned-container"> </div> </nav> <nav class="vector-appearance-landmark" aria-label="Appearance"> <div id="vector-appearance-pinned-container" class="vector-pinned-container"> <div id="vector-appearance" class="vector-appearance vector-pinnable-element"> <div class="vector-pinnable-header vector-appearance-pinnable-header vector-pinnable-header-pinned" data-feature-name="appearance-pinned" data-pinnable-element-id="vector-appearance" data-pinned-container-id="vector-appearance-pinned-container" data-unpinned-container-id="vector-appearance-unpinned-container" > <div class="vector-pinnable-header-label">Appearance</div> <button class="vector-pinnable-header-toggle-button vector-pinnable-header-pin-button" data-event-name="pinnable-header.vector-appearance.pin">move to sidebar</button> <button class="vector-pinnable-header-toggle-button vector-pinnable-header-unpin-button" data-event-name="pinnable-header.vector-appearance.unpin">hide</button> </div> </div> </div> </nav> </div> </div> <div id="bodyContent" class="vector-body" aria-labelledby="firstHeading" data-mw-ve-target-container> <div class="vector-body-before-content"> <div class="mw-indicators"> </div> <div id="siteSub" class="noprint">From Wikipedia, the free encyclopedia</div> </div> <div id="contentSub"><div id="mw-content-subtitle"></div></div> <div id="mw-content-text" class="mw-body-content"><div class="mw-content-ltr mw-parser-output" lang="en" dir="ltr"><div class="shortdescription nomobile noexcerpt noprint searchaux" style="display:none">Application of internet security to web browsers</div> <p> <b>Browser security</b> is the application of <a href="/wiki/Internet_security" title="Internet security">Internet security</a> to <a href="/wiki/Web_browser" title="Web browser">web browsers</a> in order to protect <a href="/wiki/Computer_network" title="Computer network">networked</a> data and <a href="/wiki/Computer_system" class="mw-redirect" title="Computer system">computer systems</a> from breaches of privacy or <a href="/wiki/Malware" title="Malware">malware</a>. Security exploits of <a href="/wiki/Web_browser" title="Web browser">browsers</a> often use <a href="/wiki/JavaScript" title="JavaScript">JavaScript</a>, sometimes with <a href="/wiki/Cross-site_scripting" title="Cross-site scripting">cross-site scripting</a> (XSS) with a secondary payload using <a href="/wiki/Adobe_Flash" title="Adobe Flash">Adobe Flash</a>. Security exploits can also take advantage of <a href="/wiki/Vulnerability_(computing)" class="mw-redirect" title="Vulnerability (computing)">vulnerabilities</a> (security holes) that are commonly exploited in all <a href="/wiki/Web_browser" title="Web browser">browsers</a>. </p> <meta property="mw:PageProp/toc" /> <div class="mw-heading mw-heading2"><h2 id="History">History</h2><span class="mw-editsection"><span class="mw-editsection-bracket">[</span><a href="/w/index.php?title=Browser_security&amp;action=edit&amp;section=1" title="Edit section: History"><span>edit</span></a><span class="mw-editsection-bracket">]</span></span></div> <p>The first web browser, WorldWideWeb, created in 1990 by Sir <a href="/wiki/Tim_Berners-Lee" title="Tim Berners-Lee">Tim Berners-Lee</a>, was rudimentary, using the <a href="/wiki/HTTP" title="HTTP">HTTP protocol</a> to navigate between documents. The <a href="/wiki/Mosaic_web_browser" class="mw-redirect" title="Mosaic web browser">Mosaic web browser</a>, released in April 1993, featured a graphical user interface that made the Web more accessible, sparking the Internet boom of the 1990s. This boom led to the browser wars between <a href="/wiki/Netscape_Navigator" title="Netscape Navigator">Netscape Navigator</a>, developed by Mosaic's creators, and Microsoft's <a href="/wiki/Internet_Explorer" title="Internet Explorer">Internet Explorer</a>. This fierce competition was characterized by a rapid race to incorporate new features, often at the expense of user <a href="/wiki/Privacy" title="Privacy">privacy</a> and <a href="/wiki/Computer_security" title="Computer security">security</a>.<sup id="cite_ref-1" class="reference"><a href="#cite_note-1"><span class="cite-bracket">&#91;</span>1<span class="cite-bracket">&#93;</span></a></sup><sup id="cite_ref-2" class="reference"><a href="#cite_note-2"><span class="cite-bracket">&#91;</span>2<span class="cite-bracket">&#93;</span></a></sup> Features were added to HTML to support interoperability with proprietary systems like <a href="/wiki/VBScript" title="VBScript">VBScript</a> and <a href="/wiki/Java_applet" title="Java applet">Java applets</a>, and vendors aimed to ensure their browsers could handle websites optimized for competitor. This led to increasingly convoluted set of undocumented hacks and fault tolerant architectures that were often hard to standardize due to competing interests.<sup id="cite_ref-:0_3-0" class="reference"><a href="#cite_note-:0-3"><span class="cite-bracket">&#91;</span>3<span class="cite-bracket">&#93;</span></a></sup> After the end of this period, colloquially known as the <a href="/wiki/First_browser_war" class="mw-redirect" title="First browser war">first browser war</a>, Internet Explorer captured over 80% of the market. However, despite being in this dominant position, Microsoft, the creator of Internet Explorer did not invest significantly into the browser after this period.<sup id="cite_ref-4" class="reference"><a href="#cite_note-4"><span class="cite-bracket">&#91;</span>4<span class="cite-bracket">&#93;</span></a></sup> This led to the proliferation of security issues, browser <a href="/wiki/Vulnerability" title="Vulnerability">vulnerabilities</a> and web <a href="/wiki/Computer_worm" title="Computer worm">worms</a> leading eventually to the creation of modern browsers like <a href="/wiki/Firefox" title="Firefox">Mozilla Firefox</a>, <a href="/wiki/Safari_(web_browser)" title="Safari (web browser)">Safari</a> and eventually <a href="/wiki/Google_Chrome" title="Google Chrome">Google Chrome</a>.<sup id="cite_ref-:0_3-1" class="reference"><a href="#cite_note-:0-3"><span class="cite-bracket">&#91;</span>3<span class="cite-bracket">&#93;</span></a></sup> </p> <div class="mw-heading mw-heading2"><h2 id="Security">Security</h2><span class="mw-editsection"><span class="mw-editsection-bracket">[</span><a href="/w/index.php?title=Browser_security&amp;action=edit&amp;section=2" title="Edit section: Security"><span>edit</span></a><span class="mw-editsection-bracket">]</span></span></div> <p>Web browsers can be breached in one or more of the following ways: </p> <ul><li><a href="/wiki/Operating_system" title="Operating system">Operating system</a> is breached and malware is reading/modifying the browser memory space in privilege mode<sup id="cite_ref-5" class="reference"><a href="#cite_note-5"><span class="cite-bracket">&#91;</span>5<span class="cite-bracket">&#93;</span></a></sup></li> <li>Operating system has a malware running as a background process, which is reading/modifying the browser memory space in privileged mode</li> <li>Main browser executable can be hacked</li> <li>Browser components may be hacked</li> <li>Browser plugins can be hacked</li> <li>Browser network communications could be intercepted outside the machine<sup id="cite_ref-6" class="reference"><a href="#cite_note-6"><span class="cite-bracket">&#91;</span>6<span class="cite-bracket">&#93;</span></a></sup></li></ul> <p>The browser may not be aware of any of the breaches above and may show the user a safe connection is made. </p><p>Whenever a browser communicates with a website, the website, as part of that communication, collects some information about the browser (in order to process the formatting of the page to be delivered, if nothing else).<sup id="cite_ref-7" class="reference"><a href="#cite_note-7"><span class="cite-bracket">&#91;</span>7<span class="cite-bracket">&#93;</span></a></sup> If malicious code has been inserted into the website's content, or in a worst-case scenario, if that website has been specifically designed to host malicious code, then vulnerabilities specific to a particular browser can allow this malicious code to run processes within the browser application in unintended ways (and remember, one of the bits of information that a website collects from a browser communication is the browser's identity- allowing specific vulnerabilities to be exploited).<sup id="cite_ref-8" class="reference"><a href="#cite_note-8"><span class="cite-bracket">&#91;</span>8<span class="cite-bracket">&#93;</span></a></sup> Once an attacker is able to run processes on the visitor's machine, then exploiting known security vulnerabilities can allow the attacker to gain privileged access (if the browser isn't already running with privileged access) to the "infected" system in order to perform an even greater variety of malicious processes and activities on the machine or even the victim's whole network.<sup id="cite_ref-9" class="reference"><a href="#cite_note-9"><span class="cite-bracket">&#91;</span>9<span class="cite-bracket">&#93;</span></a></sup> </p><p>Breaches of web browser security are usually for the purpose of bypassing protections to display <a href="/wiki/Pop-up_advertising" class="mw-redirect" title="Pop-up advertising">pop-up advertising</a><sup id="cite_ref-mozilla-adblock-plus_10-0" class="reference"><a href="#cite_note-mozilla-adblock-plus-10"><span class="cite-bracket">&#91;</span>10<span class="cite-bracket">&#93;</span></a></sup> collecting <a href="/wiki/Personally_identifiable_information" class="mw-redirect" title="Personally identifiable information">personally identifiable information</a> (PII) for either <a href="/wiki/Internet_marketing" class="mw-redirect" title="Internet marketing">Internet marketing</a> or <a href="/wiki/Identity_theft" title="Identity theft">identity theft</a>, <a href="/wiki/Website_tracking" title="Website tracking">website tracking</a> or <a href="/wiki/Web_analytics" title="Web analytics">web analytics</a> about a user against their will using tools such as <a href="/wiki/Web_bug" class="mw-redirect" title="Web bug">web bugs</a>, <a href="/wiki/Clickjacking" title="Clickjacking">Clickjacking</a>, <a href="/wiki/Likejacking" class="mw-redirect" title="Likejacking">Likejacking</a> (where <a href="/wiki/Facebook" title="Facebook">Facebook</a>'s <a href="/wiki/Like_button" title="Like button">like button</a> is targeted),<sup id="cite_ref-11" class="reference"><a href="#cite_note-11"><span class="cite-bracket">&#91;</span>11<span class="cite-bracket">&#93;</span></a></sup><sup id="cite_ref-12" class="reference"><a href="#cite_note-12"><span class="cite-bracket">&#91;</span>12<span class="cite-bracket">&#93;</span></a></sup><sup id="cite_ref-cnet-privacy-scrutiny_13-0" class="reference"><a href="#cite_note-cnet-privacy-scrutiny-13"><span class="cite-bracket">&#91;</span>13<span class="cite-bracket">&#93;</span></a></sup><sup id="cite_ref-14" class="reference"><a href="#cite_note-14"><span class="cite-bracket">&#91;</span>14<span class="cite-bracket">&#93;</span></a></sup> <a href="/wiki/HTTP_cookie" title="HTTP cookie">HTTP cookies</a>, <a href="/wiki/Zombie_cookie" title="Zombie cookie">zombie cookies</a> or <a href="/wiki/Local_shared_object" title="Local shared object">Flash cookies</a> (Local Shared Objects or LSOs);<sup id="cite_ref-mozilla-betterprivacy_15-0" class="reference"><a href="#cite_note-mozilla-betterprivacy-15"><span class="cite-bracket">&#91;</span>15<span class="cite-bracket">&#93;</span></a></sup> installing <a href="/wiki/Adware" title="Adware">adware</a>, <a href="/wiki/Computer_virus" title="Computer virus">viruses</a>, <a href="/wiki/Spyware" title="Spyware">spyware</a> such as <a href="/wiki/Trojan_horse_(computing)" title="Trojan horse (computing)">Trojan horses</a> (to gain access to users' <a href="/wiki/Personal_computer" title="Personal computer">personal computers</a> via <a href="/wiki/Cracker_(computer_security)" class="mw-redirect" title="Cracker (computer security)">cracking</a>) or other <a href="/wiki/Malware" title="Malware">malware</a> including <a href="/wiki/Online_banking" title="Online banking">online banking</a> theft using <a href="/wiki/Man-in-the-browser" title="Man-in-the-browser">man-in-the-browser</a> attacks. </p><p>In depth study of vulnerabilities in Chromium web-browser indicates that, Improper Input Validation (CWE-20) and Improper Access Control (CWE-284) are the most occurring root causes for security vulnerabilities.<sup id="cite_ref-16" class="reference"><a href="#cite_note-16"><span class="cite-bracket">&#91;</span>16<span class="cite-bracket">&#93;</span></a></sup> Furthermore, among vulnerabilities examined at the time of this study, 106 vulnerabilities occurred in Chromium because of reusing or importing vulnerable versions of third party libraries. </p><p>Vulnerabilities in the web browser software itself can be minimized by keeping browser software updated,<sup id="cite_ref-17" class="reference"><a href="#cite_note-17"><span class="cite-bracket">&#91;</span>17<span class="cite-bracket">&#93;</span></a></sup> but will not be sufficient if the underlying operating system is compromised, for example, by a rootkit.<sup id="cite_ref-18" class="reference"><a href="#cite_note-18"><span class="cite-bracket">&#91;</span>18<span class="cite-bracket">&#93;</span></a></sup> Some subcomponents of browsers such as scripting, add-ons, and cookies<sup id="cite_ref-19" class="reference"><a href="#cite_note-19"><span class="cite-bracket">&#91;</span>19<span class="cite-bracket">&#93;</span></a></sup><sup id="cite_ref-20" class="reference"><a href="#cite_note-20"><span class="cite-bracket">&#91;</span>20<span class="cite-bracket">&#93;</span></a></sup><sup id="cite_ref-21" class="reference"><a href="#cite_note-21"><span class="cite-bracket">&#91;</span>21<span class="cite-bracket">&#93;</span></a></sup> are particularly vulnerable ("the <a href="/wiki/Confused_deputy_problem" title="Confused deputy problem">confused deputy problem</a>") and also need to be addressed. </p><p>Following the principle of <a href="/wiki/Defence_in_depth" title="Defence in depth">defence in depth</a>, a fully patched and correctly configured browser may not be sufficient to ensure that browser-related security issues cannot occur. For example, a <a href="/wiki/Rootkit" title="Rootkit">rootkit</a> can <a href="/wiki/Keystroke_logger" class="mw-redirect" title="Keystroke logger">capture keystrokes</a> while someone logs into a banking website, or carry out a <a href="/wiki/Man-in-the-middle" class="mw-redirect" title="Man-in-the-middle">man-in-the-middle</a> attack by modifying network traffic to and from a web browser. <a href="/wiki/DNS_hijacking" title="DNS hijacking">DNS hijacking</a> or <a href="/wiki/DNS_spoofing" title="DNS spoofing">DNS spoofing</a> may be used to return false positives for mistyped website names, or to subvert search results for popular search engines. Malware such as <a href="/wiki/RSPlug" title="RSPlug">RSPlug</a> simply modifies a system's configuration to point at rogue DNS servers. </p><p>Browsers can use more secure methods of <a href="/wiki/Network_protocols" class="mw-redirect" title="Network protocols">network communication</a> to help prevent some of these attacks: </p> <ul><li><a href="/wiki/Domain_Name_System" title="Domain Name System">DNS</a>: <a href="/wiki/DNSSec" class="mw-redirect" title="DNSSec">DNSSec</a> and <a href="/wiki/DNSCrypt" title="DNSCrypt">DNSCrypt</a>, for example with non-default <a href="/wiki/DNS_server" class="mw-redirect" title="DNS server">DNS servers</a> such as <a href="/wiki/Google_Public_DNS" title="Google Public DNS">Google Public DNS</a> or <a href="/wiki/OpenDNS" title="OpenDNS">OpenDNS</a>.</li> <li><a href="/wiki/HTTP" title="HTTP">HTTP</a>: <a href="/wiki/HTTP_Secure" class="mw-redirect" title="HTTP Secure">HTTP Secure</a> and <a href="/wiki/SPDY" title="SPDY">SPDY</a> with digitally signed <a href="/wiki/Public_key_certificate" title="Public key certificate">public key certificates</a> or <a href="/wiki/Extended_Validation_Certificate" title="Extended Validation Certificate">Extended Validation Certificates</a>.</li></ul> <p>Perimeter defenses, typically through firewalls and the use of <a href="/wiki/Content-control_software" class="mw-redirect" title="Content-control software">filtering</a> <a href="/wiki/Proxy_server" title="Proxy server">proxy servers</a> that block malicious websites and perform antivirus scans of any file downloads, are commonly implemented as a best practice in large organizations to block malicious network traffic before it reaches a browser. </p><p>The topic of browser security has grown to the point of spawning the creation of entire organizations, such as The Browser Exploitation Framework Project,<sup id="cite_ref-22" class="reference"><a href="#cite_note-22"><span class="cite-bracket">&#91;</span>22<span class="cite-bracket">&#93;</span></a></sup> creating platforms to collect tools to breach browser security, ostensibly in order to test browsers and network systems for vulnerabilities. </p> <div class="mw-heading mw-heading3"><h3 id="Plugins_and_extensions">Plugins and extensions</h3><span class="mw-editsection"><span class="mw-editsection-bracket">[</span><a href="/w/index.php?title=Browser_security&amp;action=edit&amp;section=3" title="Edit section: Plugins and extensions"><span>edit</span></a><span class="mw-editsection-bracket">]</span></span></div> <p>Although not part of the browser per se, browser <a href="/wiki/Plug-in_(computing)" title="Plug-in (computing)">plugins</a> and <a href="/wiki/Browser_extension" title="Browser extension">extensions</a> extend the <a href="/wiki/Attack_surface" title="Attack surface">attack surface</a>, exposing vulnerabilities in <a href="/wiki/Adobe_Flash_Player#Security" title="Adobe Flash Player">Adobe Flash Player</a>, <a href="/wiki/Adobe_Acrobat#Security" title="Adobe Acrobat">Adobe (Acrobat) Reader</a>, <a href="/wiki/Java_plugin" class="mw-redirect" title="Java plugin">Java plugin</a>, and <a href="/wiki/ActiveX" title="ActiveX">ActiveX</a> that are commonly exploited. Researchers<sup id="cite_ref-23" class="reference"><a href="#cite_note-23"><span class="cite-bracket">&#91;</span>23<span class="cite-bracket">&#93;</span></a></sup> have extensively studied the security architecture of various web-browsers in particular those relying on plug-and-play designs. This study has identified 16 common vulnerability types, and 19 potential mitigations. Malware may also be implemented as a browser extension, such as a <a href="/wiki/Browser_helper_object" class="mw-redirect" title="Browser helper object">browser helper object</a> in the case of Internet Explorer.<sup id="cite_ref-24" class="reference"><a href="#cite_note-24"><span class="cite-bracket">&#91;</span>24<span class="cite-bracket">&#93;</span></a></sup> In various other exploits websites which were designed to look authentic and included rogue 'update Adobe Flash' popups designed as visual cues to download malware payloads in their place.<sup id="cite_ref-25" class="reference"><a href="#cite_note-25"><span class="cite-bracket">&#91;</span>25<span class="cite-bracket">&#93;</span></a></sup> Some browsers like <a href="/wiki/Google_Chrome#Security" title="Google Chrome">Google Chrome</a> and Mozilla <a href="/wiki/Firefox#Security" title="Firefox">Firefox</a> can block—or warn users of—insecure plugins. </p> <div class="mw-heading mw-heading3"><h3 id="Adobe_Flash">Adobe Flash</h3><span class="mw-editsection"><span class="mw-editsection-bracket">[</span><a href="/w/index.php?title=Browser_security&amp;action=edit&amp;section=4" title="Edit section: Adobe Flash"><span>edit</span></a><span class="mw-editsection-bracket">]</span></span></div> <style data-mw-deduplicate="TemplateStyles:r1236090951">.mw-parser-output .hatnote{font-style:italic}.mw-parser-output div.hatnote{padding-left:1.6em;margin-bottom:0.5em}.mw-parser-output .hatnote i{font-style:normal}.mw-parser-output .hatnote+link+.hatnote{margin-top:-0.5em}@media print{body.ns-0 .mw-parser-output .hatnote{display:none!important}}</style><div role="note" class="hatnote navigation-not-searchable">Main article: <a href="/wiki/Local_shared_object#Privacy_concerns" title="Local shared object">Local shared object §&#160;Privacy concerns</a></div> <p>An August 2009 study by the <a href="/wiki/Social_Science_Research_Network" title="Social Science Research Network">Social Science Research Network</a> found that 50% of websites using Flash were also employing Flash cookies, yet privacy policies rarely disclosed them, and user controls for privacy preferences were lacking.<sup id="cite_ref-26" class="reference"><a href="#cite_note-26"><span class="cite-bracket">&#91;</span>26<span class="cite-bracket">&#93;</span></a></sup> Most browsers' <a href="/wiki/Web_cache" title="Web cache">cache</a> and history delete functions do not affect Flash Player's writing Local Shared Objects to its own cache, and the user community is much less aware of the existence and function of Flash cookies than HTTP cookies.<sup id="cite_ref-27" class="reference"><a href="#cite_note-27"><span class="cite-bracket">&#91;</span>27<span class="cite-bracket">&#93;</span></a></sup> Thus, users having deleted HTTP cookies and purged browser history files and caches may believe that they have purged all tracking data from their computers while in fact Flash browsing history remains. As well as manual removal, the BetterPrivacy add-on for Firefox can remove Flash cookies.<sup id="cite_ref-mozilla-betterprivacy_15-1" class="reference"><a href="#cite_note-mozilla-betterprivacy-15"><span class="cite-bracket">&#91;</span>15<span class="cite-bracket">&#93;</span></a></sup> <a href="/wiki/Adblock_Plus" title="Adblock Plus">Adblock Plus</a> can be used to filter out specific threats<sup id="cite_ref-mozilla-adblock-plus_10-1" class="reference"><a href="#cite_note-mozilla-adblock-plus-10"><span class="cite-bracket">&#91;</span>10<span class="cite-bracket">&#93;</span></a></sup> and <a href="/wiki/Flashblock" title="Flashblock">Flashblock</a> can be used to give an option before allowing content on otherwise trusted sites.<sup id="cite_ref-mozilla-flashblock_28-0" class="reference"><a href="#cite_note-mozilla-flashblock-28"><span class="cite-bracket">&#91;</span>28<span class="cite-bracket">&#93;</span></a></sup> </p><p><a href="/wiki/Charlie_Miller_(security_researcher)" title="Charlie Miller (security researcher)">Charlie Miller</a> recommended "not to install Flash"<sup id="cite_ref-29" class="reference"><a href="#cite_note-29"><span class="cite-bracket">&#91;</span>29<span class="cite-bracket">&#93;</span></a></sup> at the <a href="/wiki/Computer_security_conference" title="Computer security conference">computer security conference</a> CanSecWest. Several other security experts also recommend to either not install Adobe Flash Player or to block it.<sup id="cite_ref-30" class="reference"><a href="#cite_note-30"><span class="cite-bracket">&#91;</span>30<span class="cite-bracket">&#93;</span></a></sup> </p> <div class="mw-heading mw-heading2"><h2 id="Password_security_model">Password security model</h2><span class="mw-editsection"><span class="mw-editsection-bracket">[</span><a href="/w/index.php?title=Browser_security&amp;action=edit&amp;section=5" title="Edit section: Password security model"><span>edit</span></a><span class="mw-editsection-bracket">]</span></span></div> <p>The contents of a web page are arbitrary and controlled by the entity owning the domain named displayed in the address bar. If <a href="/wiki/HTTPS" title="HTTPS">HTTPS</a> is used, then encryption is used to secure against attackers with access to the network from changing the page contents en route. When presented with a password field on a web page, a user is supposed to look at the address bar to determine whether the domain name in the address bar is the correct place to send the password.<sup id="cite_ref-31" class="reference"><a href="#cite_note-31"><span class="cite-bracket">&#91;</span>31<span class="cite-bracket">&#93;</span></a></sup> For example, for Google's single sign-on system (used on e.g. YouTube.com), the user should always check that the address bar says "https://accounts.google.com" before inputting their password. </p><p>An un-compromised browser guarantees that the address bar is correct. This guarantee is one reason why browsers will generally display a warning when entering fullscreen mode, on top of where the address bar would normally be, so that a fullscreen website cannot make a fake browser user interface with a fake address bar.<sup id="cite_ref-32" class="reference"><a href="#cite_note-32"><span class="cite-bracket">&#91;</span>32<span class="cite-bracket">&#93;</span></a></sup> </p> <div class="mw-heading mw-heading2"><h2 id="Browser_hardening">Browser hardening</h2><span class="mw-editsection"><span class="mw-editsection-bracket">[</span><a href="/w/index.php?title=Browser_security&amp;action=edit&amp;section=6" title="Edit section: Browser hardening"><span>edit</span></a><span class="mw-editsection-bracket">]</span></span></div> <p>Browsing the Internet as a <a href="/wiki/Principle_of_least_privilege" title="Principle of least privilege">least-privilege</a> user account (i.e. without administrator privileges) limits the ability of a security exploit in a web browser from compromising the whole operating system.<sup id="cite_ref-33" class="reference"><a href="#cite_note-33"><span class="cite-bracket">&#91;</span>33<span class="cite-bracket">&#93;</span></a></sup> </p><p><a href="/wiki/Internet_Explorer_4" title="Internet Explorer 4">Internet Explorer 4</a> and later allows the blocklisting<sup id="cite_ref-34" class="reference"><a href="#cite_note-34"><span class="cite-bracket">&#91;</span>34<span class="cite-bracket">&#93;</span></a></sup><sup id="cite_ref-35" class="reference"><a href="#cite_note-35"><span class="cite-bracket">&#91;</span>35<span class="cite-bracket">&#93;</span></a></sup><sup id="cite_ref-36" class="reference"><a href="#cite_note-36"><span class="cite-bracket">&#91;</span>36<span class="cite-bracket">&#93;</span></a></sup> and allowlisting<sup id="cite_ref-37" class="reference"><a href="#cite_note-37"><span class="cite-bracket">&#91;</span>37<span class="cite-bracket">&#93;</span></a></sup><sup id="cite_ref-38" class="reference"><a href="#cite_note-38"><span class="cite-bracket">&#91;</span>38<span class="cite-bracket">&#93;</span></a></sup> of <a href="/wiki/ActiveX" title="ActiveX">ActiveX</a> controls, add-ons and browser extensions in various ways. </p><p><a href="/wiki/Internet_Explorer_7" title="Internet Explorer 7">Internet Explorer 7</a> added "protected mode", a technology that hardens the browser through the application of a security sandboxing feature of <a href="/wiki/Windows_Vista" title="Windows Vista">Windows Vista</a> called <a href="/wiki/Mandatory_Integrity_Control" title="Mandatory Integrity Control">Mandatory Integrity Control</a>.<sup id="cite_ref-symantec_39-0" class="reference"><a href="#cite_note-symantec-39"><span class="cite-bracket">&#91;</span>39<span class="cite-bracket">&#93;</span></a></sup> <a href="/wiki/Google_Chrome" title="Google Chrome">Google Chrome</a> provides a <a href="/wiki/Sandbox_(computer_security)" title="Sandbox (computer security)">sandbox</a> to limit web page access to the operating system.<sup id="cite_ref-40" class="reference"><a href="#cite_note-40"><span class="cite-bracket">&#91;</span>40<span class="cite-bracket">&#93;</span></a></sup> </p><p>Suspected malware sites reported to Google,<sup id="cite_ref-41" class="reference"><a href="#cite_note-41"><span class="cite-bracket">&#91;</span>41<span class="cite-bracket">&#93;</span></a></sup> and confirmed by Google, are flagged as hosting malware in certain browsers.<sup id="cite_ref-42" class="reference"><a href="#cite_note-42"><span class="cite-bracket">&#91;</span>42<span class="cite-bracket">&#93;</span></a></sup> </p><p>There are third-party extensions and plugins available to <a href="/wiki/Hardening_(computing)" title="Hardening (computing)">harden</a> even the latest browsers,<sup id="cite_ref-43" class="reference"><a href="#cite_note-43"><span class="cite-bracket">&#91;</span>43<span class="cite-bracket">&#93;</span></a></sup> and some for older browsers and operating systems. <a href="/wiki/Whitelist" title="Whitelist">Whitelist</a>-based software such as <a href="/wiki/NoScript" title="NoScript">NoScript</a> can block <a href="/wiki/JavaScript" title="JavaScript">JavaScript</a> and Adobe Flash which is used for most attacks on privacy, allowing users to choose only sites they know are safe – <a href="/wiki/AdBlock_Plus" class="mw-redirect" title="AdBlock Plus">AdBlock Plus</a> also uses whitelist <a href="/wiki/Ad_filtering" class="mw-redirect" title="Ad filtering">ad filtering</a> rules subscriptions, though both the software itself and the filtering list maintainers have come under controversy for by-default allowing some sites to pass the pre-set filters.<sup id="cite_ref-44" class="reference"><a href="#cite_note-44"><span class="cite-bracket">&#91;</span>44<span class="cite-bracket">&#93;</span></a></sup> The <a href="/wiki/United_States_Computer_Emergency_Readiness_Team" title="United States Computer Emergency Readiness Team">US-CERT</a> recommends to block <a href="/wiki/Adobe_Flash" title="Adobe Flash">Flash</a> using <a href="/wiki/NoScript" title="NoScript">NoScript</a>.<sup id="cite_ref-45" class="reference"><a href="#cite_note-45"><span class="cite-bracket">&#91;</span>45<span class="cite-bracket">&#93;</span></a></sup> </p> <div class="mw-heading mw-heading2"><h2 id="Fuzzing">Fuzzing</h2><span class="mw-editsection"><span class="mw-editsection-bracket">[</span><a href="/w/index.php?title=Browser_security&amp;action=edit&amp;section=7" title="Edit section: Fuzzing"><span>edit</span></a><span class="mw-editsection-bracket">]</span></span></div> <p>Modern web browsers undergo extensive <a href="/wiki/Fuzzing" title="Fuzzing">fuzzing</a> to uncover vulnerabilities. The <a href="/wiki/Chromium_(web_browser)" title="Chromium (web browser)">Chromium</a> code of <a href="/wiki/Google_Chrome" title="Google Chrome">Google Chrome</a> is continuously fuzzed by the Chrome Security Team with 15,000 cores.<sup id="cite_ref-Security_46-0" class="reference"><a href="#cite_note-Security-46"><span class="cite-bracket">&#91;</span>46<span class="cite-bracket">&#93;</span></a></sup> For <a href="/wiki/Microsoft_Edge" title="Microsoft Edge">Microsoft Edge</a> and <a href="/wiki/Internet_Explorer" title="Internet Explorer">Internet Explorer</a>, <a href="/wiki/Microsoft" title="Microsoft">Microsoft</a> performed fuzzed testing with 670 machine-years during product development, generating more than 400 billion DOM manipulations from 1 billion HTML files.<sup id="cite_ref-47" class="reference"><a href="#cite_note-47"><span class="cite-bracket">&#91;</span>47<span class="cite-bracket">&#93;</span></a></sup><sup id="cite_ref-Security_46-1" class="reference"><a href="#cite_note-Security-46"><span class="cite-bracket">&#91;</span>46<span class="cite-bracket">&#93;</span></a></sup> </p> <div class="mw-heading mw-heading2"><h2 id="See_also">See also</h2><span class="mw-editsection"><span class="mw-editsection-bracket">[</span><a href="/w/index.php?title=Browser_security&amp;action=edit&amp;section=8" title="Edit section: See also"><span>edit</span></a><span class="mw-editsection-bracket">]</span></span></div> <ul><li><a href="/wiki/Filter_bubble" title="Filter bubble">Filter bubble</a></li> <li><a href="/wiki/Frame_injection" title="Frame injection">Frame injection</a></li> <li><a href="/wiki/Identity_driven_networking" title="Identity driven networking">Identity driven networking</a></li> <li><a href="/wiki/Internet_safety" title="Internet safety">Internet safety</a></li> <li><a href="/wiki/Network_security_policy" title="Network security policy">Network security policy</a></li> <li><a href="/wiki/Application_security" title="Application security">Application security</a></li></ul> <div class="mw-heading mw-heading2"><h2 id="References">References</h2><span class="mw-editsection"><span class="mw-editsection-bracket">[</span><a href="/w/index.php?title=Browser_security&amp;action=edit&amp;section=9" title="Edit section: References"><span>edit</span></a><span class="mw-editsection-bracket">]</span></span></div> <style data-mw-deduplicate="TemplateStyles:r1239543626">.mw-parser-output .reflist{margin-bottom:0.5em;list-style-type:decimal}@media screen{.mw-parser-output .reflist{font-size:90%}}.mw-parser-output .reflist .references{font-size:100%;margin-bottom:0;list-style-type:inherit}.mw-parser-output .reflist-columns-2{column-width:30em}.mw-parser-output .reflist-columns-3{column-width:25em}.mw-parser-output .reflist-columns{margin-top:0.3em}.mw-parser-output .reflist-columns ol{margin-top:0}.mw-parser-output .reflist-columns li{page-break-inside:avoid;break-inside:avoid-column}.mw-parser-output .reflist-upper-alpha{list-style-type:upper-alpha}.mw-parser-output .reflist-upper-roman{list-style-type:upper-roman}.mw-parser-output .reflist-lower-alpha{list-style-type:lower-alpha}.mw-parser-output .reflist-lower-greek{list-style-type:lower-greek}.mw-parser-output .reflist-lower-roman{list-style-type:lower-roman}</style><div class="reflist"> <div class="mw-references-wrap mw-references-columns"><ol class="references"> <li id="cite_note-1"><span class="mw-cite-backlink"><b><a href="#cite_ref-1">^</a></b></span> <span class="reference-text"><style data-mw-deduplicate="TemplateStyles:r1238218222">.mw-parser-output cite.citation{font-style:inherit;word-wrap:break-word}.mw-parser-output .citation q{quotes:"\"""\"""'""'"}.mw-parser-output .citation:target{background-color:rgba(0,127,255,0.133)}.mw-parser-output .id-lock-free.id-lock-free a{background:url("//upload.wikimedia.org/wikipedia/commons/6/65/Lock-green.svg")right 0.1em center/9px no-repeat}.mw-parser-output .id-lock-limited.id-lock-limited a,.mw-parser-output .id-lock-registration.id-lock-registration a{background:url("//upload.wikimedia.org/wikipedia/commons/d/d6/Lock-gray-alt-2.svg")right 0.1em center/9px no-repeat}.mw-parser-output .id-lock-subscription.id-lock-subscription a{background:url("//upload.wikimedia.org/wikipedia/commons/a/aa/Lock-red-alt-2.svg")right 0.1em center/9px no-repeat}.mw-parser-output .cs1-ws-icon a{background:url("//upload.wikimedia.org/wikipedia/commons/4/4c/Wikisource-logo.svg")right 0.1em center/12px no-repeat}body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .id-lock-free a,body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .id-lock-limited a,body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .id-lock-registration a,body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .id-lock-subscription a,body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .cs1-ws-icon a{background-size:contain;padding:0 1em 0 0}.mw-parser-output .cs1-code{color:inherit;background:inherit;border:none;padding:inherit}.mw-parser-output .cs1-hidden-error{display:none;color:var(--color-error,#d33)}.mw-parser-output .cs1-visible-error{color:var(--color-error,#d33)}.mw-parser-output .cs1-maint{display:none;color:#085;margin-left:0.3em}.mw-parser-output .cs1-kern-left{padding-left:0.2em}.mw-parser-output .cs1-kern-right{padding-right:0.2em}.mw-parser-output .citation .mw-selflink{font-weight:inherit}@media screen{.mw-parser-output .cs1-format{font-size:95%}html.skin-theme-clientpref-night .mw-parser-output .cs1-maint{color:#18911f}}@media screen and (prefers-color-scheme:dark){html.skin-theme-clientpref-os .mw-parser-output .cs1-maint{color:#18911f}}</style><cite id="CITEREFFranken2024" class="citation thesis cs1">Franken, Gertjan (13 February 2024). <a rel="nofollow" class="external text" href="https://lirias.kuleuven.be/4131122&amp;lang=en"><i>Security and Privacy Policy Bugs in Browser Engines</i></a> (Thesis). pp.&#160;3, 4.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Adissertation&amp;rft.title=Security+and+Privacy+Policy+Bugs+in+Browser+Engines&amp;rft.date=2024-02-13&amp;rft.aulast=Franken&amp;rft.aufirst=Gertjan&amp;rft_id=https%3A%2F%2Flirias.kuleuven.be%2F4131122%26lang%3Den&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-2"><span class="mw-cite-backlink"><b><a href="#cite_ref-2">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFHeiderichInführFäßlerKrein2017" class="citation web cs1">Heiderich, Mario; Inführ, Alex; Fäßler, Fabian; Krein, Nikolai; Kinugawa, Masato (29 November 2017). <a rel="nofollow" class="external text" href="https://cure53.de/browser-security-whitepaper.pdf">"Cure53 Browser Security White Paper"</a> <span class="cs1-format">(PDF)</span>. <a href="/wiki/Cure53" title="Cure53">Cure53</a>. p.&#160;9.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Cure53+Browser+Security+White+Paper&amp;rft.pages=9&amp;rft.pub=Cure53&amp;rft.date=2017-11-29&amp;rft.aulast=Heiderich&amp;rft.aufirst=Mario&amp;rft.au=Inf%C3%BChr%2C+Alex&amp;rft.au=F%C3%A4%C3%9Fler%2C+Fabian&amp;rft.au=Krein%2C+Nikolai&amp;rft.au=Kinugawa%2C+Masato&amp;rft_id=https%3A%2F%2Fcure53.de%2Fbrowser-security-whitepaper.pdf&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-:0-3"><span class="mw-cite-backlink">^ <a href="#cite_ref-:0_3-0"><sup><i><b>a</b></i></sup></a> <a href="#cite_ref-:0_3-1"><sup><i><b>b</b></i></sup></a></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFZalewski2011" class="citation book cs1">Zalewski, Michal (15 November 2011). <a rel="nofollow" class="external text" href="https://www.google.com/books/edition/The_Tangled_Web/6sxNzyRmxE4C"><i>The Tangled Web: A Guide to Securing Modern Web Applications</i></a>. No Starch Press. pp.&#160;<span class="nowrap">10–</span>12. <a href="/wiki/ISBN_(identifier)" class="mw-redirect" title="ISBN (identifier)">ISBN</a>&#160;<a href="/wiki/Special:BookSources/978-1-59327-417-7" title="Special:BookSources/978-1-59327-417-7"><bdi>978-1-59327-417-7</bdi></a>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=book&amp;rft.btitle=The+Tangled+Web%3A+A+Guide+to+Securing+Modern+Web+Applications&amp;rft.pages=%3Cspan+class%3D%22nowrap%22%3E10-%3C%2Fspan%3E12&amp;rft.pub=No+Starch+Press&amp;rft.date=2011-11-15&amp;rft.isbn=978-1-59327-417-7&amp;rft.aulast=Zalewski&amp;rft.aufirst=Michal&amp;rft_id=https%3A%2F%2Fwww.google.com%2Fbooks%2Fedition%2FThe_Tangled_Web%2F6sxNzyRmxE4C&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-4"><span class="mw-cite-backlink"><b><a href="#cite_ref-4">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFCunningham2022" class="citation web cs1">Cunningham, Andrew (15 June 2022). <a rel="nofollow" class="external text" href="https://arstechnica.com/gadgets/2022/06/remembering-internet-explorer-the-now-dead-browser-that-once-powered-the-internet/">"Internet Explorer was once synonymous with the Internet, but today it's gone for good"</a>. <i>Ars Technica</i><span class="reference-accessdate">. Retrieved <span class="nowrap">13 January</span> 2025</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Ajournal&amp;rft.genre=unknown&amp;rft.jtitle=Ars+Technica&amp;rft.atitle=Internet+Explorer+was+once+synonymous+with+the+Internet%2C+but+today+it%E2%80%99s+gone+for+good&amp;rft.date=2022-06-15&amp;rft.aulast=Cunningham&amp;rft.aufirst=Andrew&amp;rft_id=https%3A%2F%2Farstechnica.com%2Fgadgets%2F2022%2F06%2Fremembering-internet-explorer-the-now-dead-browser-that-once-powered-the-internet%2F&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-5"><span class="mw-cite-backlink"><b><a href="#cite_ref-5">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFSmith2013" class="citation web cs1">Smith, Dave (21 March 2013). <a rel="nofollow" class="external text" href="http://www.ibtimes.com/yontoo-trojan-new-mac-os-x-malware-infects-google-chrome-firefox-safari-browsers-adware-1142969">"The Yontoo Trojan: New Mac OS X Malware Infects Google Chrome, Firefox And Safari Browsers Via Adware"</a>. IBT Media Inc. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20130324025727/http://www.ibtimes.com/yontoo-trojan-new-mac-os-x-malware-infects-google-chrome-firefox-safari-browsers-adware-1142969">Archived</a> from the original on 24 March 2013<span class="reference-accessdate">. Retrieved <span class="nowrap">21 March</span> 2013</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=The+Yontoo+Trojan%3A+New+Mac+OS+X+Malware+Infects+Google+Chrome%2C+Firefox+And+Safari+Browsers+Via+Adware&amp;rft.pub=IBT+Media+Inc&amp;rft.date=2013-03-21&amp;rft.aulast=Smith&amp;rft.aufirst=Dave&amp;rft_id=http%3A%2F%2Fwww.ibtimes.com%2Fyontoo-trojan-new-mac-os-x-malware-infects-google-chrome-firefox-safari-browsers-adware-1142969&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-6"><span class="mw-cite-backlink"><b><a href="#cite_ref-6">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFGoodin" class="citation web cs1">Goodin, Dan. <a rel="nofollow" class="external text" href="https://www.theregister.co.uk/2011/09/26/mysql_hacked/">"MySQL.com breach leaves visitors exposed to malware"</a>. <i><a href="/wiki/The_Register" title="The Register">The Register</a></i>. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20110928045543/http://www.theregister.co.uk/2011/09/26/mysql_hacked/">Archived</a> from the original on 28 September 2011<span class="reference-accessdate">. Retrieved <span class="nowrap">26 September</span> 2011</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Ajournal&amp;rft.genre=unknown&amp;rft.jtitle=The+Register&amp;rft.atitle=MySQL.com+breach+leaves+visitors+exposed+to+malware&amp;rft.aulast=Goodin&amp;rft.aufirst=Dan&amp;rft_id=https%3A%2F%2Fwww.theregister.co.uk%2F2011%2F09%2F26%2Fmysql_hacked%2F&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-7"><span class="mw-cite-backlink"><b><a href="#cite_ref-7">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFClinton_Wong" class="citation web cs1">Clinton Wong. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20130613235658/http://oreilly.com/catalog/httppr/chapter/http_pkt.html">"HTTP Transactions"</a>. O'Reilly. Archived from <a rel="nofollow" class="external text" href="http://oreilly.com/catalog/httppr/chapter/http_pkt.html">the original</a> on 13 June 2013.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=HTTP+Transactions&amp;rft.pub=O%27Reilly&amp;rft.au=Clinton+Wong&amp;rft_id=http%3A%2F%2Foreilly.com%2Fcatalog%2Fhttppr%2Fchapter%2Fhttp_pkt.html&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-8"><span class="mw-cite-backlink"><b><a href="#cite_ref-8">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://web.archive.org/web/20131111192509/http://www.ebernieinc.com/9-ways-to-know-your-pc-is-infected-with-malware/">"9 Ways to Know Your PC is Infected with Malware"</a>. Archived from <a rel="nofollow" class="external text" href="http://www.ebernieinc.com/9-ways-to-know-your-pc-is-infected-with-malware/">the original</a> on 11 November 2013.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=9+Ways+to+Know+Your+PC+is+Infected+with+Malware&amp;rft_id=http%3A%2F%2Fwww.ebernieinc.com%2F9-ways-to-know-your-pc-is-infected-with-malware%2F&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-9"><span class="mw-cite-backlink"><b><a href="#cite_ref-9">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://web.archive.org/web/20130609070315/http://www.symantec.com/security_response/whitepapers.jsp?inid=us_sr_flyout_publications_security">"Symantec Security Response Whitepapers"</a>. Archived from <a rel="nofollow" class="external text" href="http://www.symantec.com/security_response/whitepapers.jsp?inid=us_sr_flyout_publications_security">the original</a> on 9 June 2013.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Symantec+Security+Response+Whitepapers&amp;rft_id=http%3A%2F%2Fwww.symantec.com%2Fsecurity_response%2Fwhitepapers.jsp%3Finid%3Dus_sr_flyout_publications_security&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-mozilla-adblock-plus-10"><span class="mw-cite-backlink">^ <a href="#cite_ref-mozilla-adblock-plus_10-0"><sup><i><b>a</b></i></sup></a> <a href="#cite_ref-mozilla-adblock-plus_10-1"><sup><i><b>b</b></i></sup></a></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFPalant" class="citation web cs1"><a href="/wiki/Wladimir_Palant" class="mw-redirect" title="Wladimir Palant">Palant, Wladimir</a>. <a rel="nofollow" class="external text" href="https://addons.mozilla.org/firefox/addon/adblock-plus">"Adblock Plus&#160;:: Add-ons for Firefox"</a>. <i><a href="/wiki/Mozilla_Add-ons" class="mw-redirect" title="Mozilla Add-ons">Mozilla Add-ons</a></i>. <a href="/wiki/Mozilla_Foundation" title="Mozilla Foundation">Mozilla Foundation</a>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Ajournal&amp;rft.genre=unknown&amp;rft.jtitle=Mozilla+Add-ons&amp;rft.atitle=Adblock+Plus+%3A%3A+Add-ons+for+Firefox&amp;rft.aulast=Palant&amp;rft.aufirst=Wladimir&amp;rft_id=https%3A%2F%2Faddons.mozilla.org%2Ffirefox%2Faddon%2Fadblock-plus&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-11"><span class="mw-cite-backlink"><b><a href="#cite_ref-11">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation news cs1"><a rel="nofollow" class="external text" href="https://www.cbc.ca/news/science/facebook-privacy-probed-over-like-invitations-1.968585">"Facebook privacy probed over 'like,' invitations"</a>. CBC News. 23 September 2010. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20120626205135/http://www.cbc.ca/news/technology/story/2010/09/23/facebook-like-invitations.html">Archived</a> from the original on 26 June 2012<span class="reference-accessdate">. Retrieved <span class="nowrap">24 August</span> 2011</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Ajournal&amp;rft.genre=article&amp;rft.atitle=Facebook+privacy+probed+over+%27like%2C%27+invitations&amp;rft.date=2010-09-23&amp;rft_id=https%3A%2F%2Fwww.cbc.ca%2Fnews%2Fscience%2Ffacebook-privacy-probed-over-like-invitations-1.968585&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-12"><span class="mw-cite-backlink"><b><a href="#cite_ref-12">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFAlbanesius2011" class="citation news cs1">Albanesius, Chloe (19 August 2011). <a rel="nofollow" class="external text" href="https://www.pcmag.com/article2/0,2817,2391440,00.asp">"German Agencies Banned From Using Facebook, 'Like' Button"</a>. <i><a href="/wiki/PC_Magazine" class="mw-redirect" title="PC Magazine">PC Magazine</a></i>. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20120329043111/http://www.pcmag.com/article2/0,2817,2391440,00.asp">Archived</a> from the original on 29 March 2012<span class="reference-accessdate">. Retrieved <span class="nowrap">24 August</span> 2011</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Ajournal&amp;rft.genre=article&amp;rft.jtitle=PC+Magazine&amp;rft.atitle=German+Agencies+Banned+From+Using+Facebook%2C+%27Like%27+Button&amp;rft.date=2011-08-19&amp;rft.aulast=Albanesius&amp;rft.aufirst=Chloe&amp;rft_id=https%3A%2F%2Fwww.pcmag.com%2Farticle2%2F0%2C2817%2C2391440%2C00.asp&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-cnet-privacy-scrutiny-13"><span class="mw-cite-backlink"><b><a href="#cite_ref-cnet-privacy-scrutiny_13-0">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFMcCullagh2010" class="citation news cs1"><a href="/wiki/Declan_McCullagh" title="Declan McCullagh">McCullagh, Declan</a> (2 June 2010). <a rel="nofollow" class="external text" href="http://news.cnet.com/8301-13578_3-20006532-38.html">"Facebook 'Like' button draws privacy scrutiny"</a>. <a href="/wiki/CNET_News" class="mw-redirect" title="CNET News">CNET News</a>. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20111205014333/http://news.cnet.com/8301-13578_3-20006532-38.html">Archived</a> from the original on 5 December 2011<span class="reference-accessdate">. Retrieved <span class="nowrap">19 December</span> 2011</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Ajournal&amp;rft.genre=article&amp;rft.atitle=Facebook+%27Like%27+button+draws+privacy+scrutiny&amp;rft.date=2010-06-02&amp;rft.aulast=McCullagh&amp;rft.aufirst=Declan&amp;rft_id=http%3A%2F%2Fnews.cnet.com%2F8301-13578_3-20006532-38.html&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-14"><span class="mw-cite-backlink"><b><a href="#cite_ref-14">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFRoosendaal2010" class="citation ssrn cs1">Roosendaal, Arnold (30 November 2010). "Facebook Tracks and Traces Everyone: Like This!". <a href="/wiki/SSRN_(identifier)" class="mw-redirect" title="SSRN (identifier)">SSRN</a>&#160;<a rel="nofollow" class="external text" href="https://papers.ssrn.com/sol3/papers.cfm?abstract_id=1717563">1717563</a>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Ajournal&amp;rft.genre=preprint&amp;rft.jtitle=Social+Science+Research+Network&amp;rft.atitle=Facebook+Tracks+and+Traces+Everyone%3A+Like+This%21&amp;rft.date=2010-11-30&amp;rft_id=https%3A%2F%2Fpapers.ssrn.com%2Fsol3%2Fpapers.cfm%3Fabstract_id%3D1717563%23id-name%3DSSRN&amp;rft.aulast=Roosendaal&amp;rft.aufirst=Arnold&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-mozilla-betterprivacy-15"><span class="mw-cite-backlink">^ <a href="#cite_ref-mozilla-betterprivacy_15-0"><sup><i><b>a</b></i></sup></a> <a href="#cite_ref-mozilla-betterprivacy_15-1"><sup><i><b>b</b></i></sup></a></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://addons.mozilla.org/firefox/addon/betterprivacy">"BetterPrivacy&#160;:: Add-ons for Firefox"</a>. <i><a href="/wiki/Mozilla_Foundation" title="Mozilla Foundation">Mozilla Foundation</a></i>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Ajournal&amp;rft.genre=unknown&amp;rft.jtitle=Mozilla+Foundation&amp;rft.atitle=BetterPrivacy+%3A%3A+Add-ons+for+Firefox&amp;rft_id=https%3A%2F%2Faddons.mozilla.org%2Ffirefox%2Faddon%2Fbetterprivacy&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span><sup class="noprint Inline-Template"><span style="white-space: nowrap;">&#91;<i><a href="/wiki/Wikipedia:Link_rot" title="Wikipedia:Link rot"><span title="&#160;Dead link tagged June 2019">permanent dead link</span></a></i><span style="visibility:hidden; color:transparent; padding-left:2px">&#8205;</span>&#93;</span></sup></span> </li> <li id="cite_note-16"><span class="mw-cite-backlink"><b><a href="#cite_ref-16">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFSantosPerumaMirakhorliGalstery2017" class="citation book cs1">Santos, J. C. S.; Peruma, A.; Mirakhorli, M.; Galstery, M.; Vidal, J. V.; Sejfia, A. (April 2017). <a rel="nofollow" class="external text" href="https://www.researchgate.net/publication/317072830">"Understanding Software Vulnerabilities Related to Architectural Security Tactics: An Empirical Investigation of Chromium, PHP and Thunderbird"</a>. <i>2017 IEEE International Conference on Software Architecture (ICSA)</i>. pp.&#160;<span class="nowrap">69–</span>78. <a href="/wiki/Doi_(identifier)" class="mw-redirect" title="Doi (identifier)">doi</a>:<a rel="nofollow" class="external text" href="https://doi.org/10.1109%2FICSA.2017.39">10.1109/ICSA.2017.39</a>. <a href="/wiki/ISBN_(identifier)" class="mw-redirect" title="ISBN (identifier)">ISBN</a>&#160;<a href="/wiki/Special:BookSources/978-1-5090-5729-0" title="Special:BookSources/978-1-5090-5729-0"><bdi>978-1-5090-5729-0</bdi></a>. <a href="/wiki/S2CID_(identifier)" class="mw-redirect" title="S2CID (identifier)">S2CID</a>&#160;<a rel="nofollow" class="external text" href="https://api.semanticscholar.org/CorpusID:29186731">29186731</a>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=bookitem&amp;rft.atitle=Understanding+Software+Vulnerabilities+Related+to+Architectural+Security+Tactics%3A+An+Empirical+Investigation+of+Chromium%2C+PHP+and+Thunderbird&amp;rft.btitle=2017+IEEE+International+Conference+on+Software+Architecture+%28ICSA%29&amp;rft.pages=%3Cspan+class%3D%22nowrap%22%3E69-%3C%2Fspan%3E78&amp;rft.date=2017-04&amp;rft_id=https%3A%2F%2Fapi.semanticscholar.org%2FCorpusID%3A29186731%23id-name%3DS2CID&amp;rft_id=info%3Adoi%2F10.1109%2FICSA.2017.39&amp;rft.isbn=978-1-5090-5729-0&amp;rft.aulast=Santos&amp;rft.aufirst=J.+C.+S.&amp;rft.au=Peruma%2C+A.&amp;rft.au=Mirakhorli%2C+M.&amp;rft.au=Galstery%2C+M.&amp;rft.au=Vidal%2C+J.+V.&amp;rft.au=Sejfia%2C+A.&amp;rft_id=https%3A%2F%2Fwww.researchgate.net%2Fpublication%2F317072830&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-17"><span class="mw-cite-backlink"><b><a href="#cite_ref-17">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFState_of_Vermont" class="citation web cs1">State of Vermont. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20120213180056/http://itsecurity.vermont.gov/threats/web_attacks">"Web Browser Attacks"</a>. Archived from <a rel="nofollow" class="external text" href="http://itsecurity.vermont.gov/threats/web_attacks">the original</a> on 13 February 2012<span class="reference-accessdate">. Retrieved <span class="nowrap">11 April</span> 2012</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Web+Browser+Attacks&amp;rft.au=State+of+Vermont&amp;rft_id=http%3A%2F%2Fitsecurity.vermont.gov%2Fthreats%2Fweb_attacks&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-18"><span class="mw-cite-backlink"><b><a href="#cite_ref-18">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://web.archive.org/web/20130516120234/https://www.symantec.com/avcenter/reference/windows.rootkit.overview.pdf">"Windows Rootkit Overview"</a> <span class="cs1-format">(PDF)</span>. Symantec. Archived from <a rel="nofollow" class="external text" href="https://www.symantec.com/avcenter/reference/windows.rootkit.overview.pdf">the original</a> <span class="cs1-format">(PDF)</span> on 16 May 2013<span class="reference-accessdate">. Retrieved <span class="nowrap">20 April</span> 2013</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Windows+Rootkit+Overview&amp;rft.pub=Symantec&amp;rft_id=https%3A%2F%2Fwww.symantec.com%2Favcenter%2Freference%2Fwindows.rootkit.overview.pdf&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-19"><span class="mw-cite-backlink"><b><a href="#cite_ref-19">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://www.acunetix.com/websitesecurity/cross-site-scripting/">"Cross Site Scripting Attack"</a>. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20130515154916/http://www.acunetix.com/websitesecurity/cross-site-scripting/">Archived</a> from the original on 15 May 2013<span class="reference-accessdate">. Retrieved <span class="nowrap">20 May</span> 2013</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Cross+Site+Scripting+Attack&amp;rft_id=http%3A%2F%2Fwww.acunetix.com%2Fwebsitesecurity%2Fcross-site-scripting%2F&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-20"><span class="mw-cite-backlink"><b><a href="#cite_ref-20">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFLenny_Zeltser" class="citation web cs1">Lenny Zeltser. <a rel="nofollow" class="external text" href="http://blog.zeltser.com/post/2527547617/targeting-web-browser">"Mitigating Attacks on the Web Browser and Add-Ons"</a>. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20130507092833/http://blog.zeltser.com/post/2527547617/targeting-web-browser">Archived</a> from the original on 7 May 2013<span class="reference-accessdate">. Retrieved <span class="nowrap">20 May</span> 2013</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Mitigating+Attacks+on+the+Web+Browser+and+Add-Ons&amp;rft.au=Lenny+Zeltser&amp;rft_id=http%3A%2F%2Fblog.zeltser.com%2Fpost%2F2527547617%2Ftargeting-web-browser&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-21"><span class="mw-cite-backlink"><b><a href="#cite_ref-21">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFDan_Goodin2013" class="citation web cs1">Dan Goodin (14 March 2013). <a rel="nofollow" class="external text" href="https://arstechnica.com/security/2013/03/new-attacks-on-ssl-decrypt-authentication-cookies/">"Two new attacks on SSL decrypt authentication cookies"</a>. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20130515021000/http://arstechnica.com/security/2013/03/new-attacks-on-ssl-decrypt-authentication-cookies/">Archived</a> from the original on 15 May 2013<span class="reference-accessdate">. Retrieved <span class="nowrap">20 May</span> 2013</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Two+new+attacks+on+SSL+decrypt+authentication+cookies&amp;rft.date=2013-03-14&amp;rft.au=Dan+Goodin&amp;rft_id=https%3A%2F%2Farstechnica.com%2Fsecurity%2F2013%2F03%2Fnew-attacks-on-ssl-decrypt-authentication-cookies%2F&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-22"><span class="mw-cite-backlink"><b><a href="#cite_ref-22">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://beefproject.com/">"beefproject.com"</a>. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20110811035950/http://beefproject.com/">Archived</a> from the original on 11 August 2011.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=beefproject.com&amp;rft_id=http%3A%2F%2Fbeefproject.com%2F&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-23"><span class="mw-cite-backlink"><b><a href="#cite_ref-23">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFSantosSejfiaCorrelloGadenkanahalli2019" class="citation book cs1">Santos, Joanna C. S.; Sejfia, Adriana; Corrello, Taylor; Gadenkanahalli, Smruthi; Mirakhorli, Mehdi (2019). <a rel="nofollow" class="external text" href="https://www.researchgate.net/publication/334130422">"Achilles' heel of plug-and-Play software architectures: A grounded theory based approach"</a>. <i>Proceedings of the 2019 27th ACM Joint Meeting on European Software Engineering Conference and Symposium on the Foundations of Software Engineering</i>. ESEC/FSE 2019. New York, NY, US: ACM. pp.&#160;<span class="nowrap">671–</span>682. <a href="/wiki/Doi_(identifier)" class="mw-redirect" title="Doi (identifier)">doi</a>:<a rel="nofollow" class="external text" href="https://doi.org/10.1145%2F3338906.3338969">10.1145/3338906.3338969</a>. <a href="/wiki/ISBN_(identifier)" class="mw-redirect" title="ISBN (identifier)">ISBN</a>&#160;<a href="/wiki/Special:BookSources/978-1-4503-5572-8" title="Special:BookSources/978-1-4503-5572-8"><bdi>978-1-4503-5572-8</bdi></a>. <a href="/wiki/S2CID_(identifier)" class="mw-redirect" title="S2CID (identifier)">S2CID</a>&#160;<a rel="nofollow" class="external text" href="https://api.semanticscholar.org/CorpusID:199501995">199501995</a>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=bookitem&amp;rft.atitle=Achilles%27+heel+of+plug-and-Play+software+architectures%3A+A+grounded+theory+based+approach&amp;rft.btitle=Proceedings+of+the+2019+27th+ACM+Joint+Meeting+on+European+Software+Engineering+Conference+and+Symposium+on+the+Foundations+of+Software+Engineering&amp;rft.place=New+York%2C+NY%2C+US&amp;rft.series=ESEC%2FFSE+2019&amp;rft.pages=%3Cspan+class%3D%22nowrap%22%3E671-%3C%2Fspan%3E682&amp;rft.pub=ACM&amp;rft.date=2019&amp;rft_id=https%3A%2F%2Fapi.semanticscholar.org%2FCorpusID%3A199501995%23id-name%3DS2CID&amp;rft_id=info%3Adoi%2F10.1145%2F3338906.3338969&amp;rft.isbn=978-1-4503-5572-8&amp;rft.aulast=Santos&amp;rft.aufirst=Joanna+C.+S.&amp;rft.au=Sejfia%2C+Adriana&amp;rft.au=Corrello%2C+Taylor&amp;rft.au=Gadenkanahalli%2C+Smruthi&amp;rft.au=Mirakhorli%2C+Mehdi&amp;rft_id=https%3A%2F%2Fwww.researchgate.net%2Fpublication%2F334130422&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-24"><span class="mw-cite-backlink"><b><a href="#cite_ref-24">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://web.archive.org/web/20130514095634/http://www.symantec.com/business/support/index?page=content&amp;id=TECH94965">"How to Create a Rule That Will Block or Log Browser Helper Objects in Symantec Endpoint Protection"</a>. Symantec.com. Archived from <a rel="nofollow" class="external text" href="http://www.symantec.com/business/support/index?page=content&amp;id=TECH94965">the original</a> on 14 May 2013<span class="reference-accessdate">. Retrieved <span class="nowrap">12 April</span> 2012</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=How+to+Create+a+Rule+That+Will+Block+or+Log+Browser+Helper+Objects+in+Symantec+Endpoint+Protection&amp;rft.pub=Symantec.com&amp;rft_id=http%3A%2F%2Fwww.symantec.com%2Fbusiness%2Fsupport%2Findex%3Fpage%3Dcontent%26id%3DTECH94965&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-25"><span class="mw-cite-backlink"><b><a href="#cite_ref-25">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFAggarwal2021" class="citation news cs1">Aggarwal, Varun (30 April 2021). <a rel="nofollow" class="external text" href="https://cio.economictimes.indiatimes.com/news/digital-security/breaking-fake-sites-of-50-indian-news-portals-luring-gullible-readers/82321192">"Breaking: Fake sites of 50 Indian News portals luring gullible readers"</a>. <i>The Economic Times CIO</i>. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20230226142811/https://cio.economictimes.indiatimes.com/news/digital-security/breaking-fake-sites-of-50-indian-news-portals-luring-gullible-readers/82321192">Archived</a> from the original on 26 February 2023<span class="reference-accessdate">. Retrieved <span class="nowrap">26 February</span> 2023</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Ajournal&amp;rft.genre=article&amp;rft.jtitle=The+Economic+Times+CIO&amp;rft.atitle=Breaking%3A+Fake+sites+of+50+Indian+News+portals+luring+gullible+readers&amp;rft.date=2021-04-30&amp;rft.aulast=Aggarwal&amp;rft.aufirst=Varun&amp;rft_id=https%3A%2F%2Fcio.economictimes.indiatimes.com%2Fnews%2Fdigital-security%2Fbreaking-fake-sites-of-50-indian-news-portals-luring-gullible-readers%2F82321192&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-26"><span class="mw-cite-backlink"><b><a href="#cite_ref-26">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFSoltaniCantyMayoThomas2009" class="citation ssrn cs1">Soltani, Ashkan; Canty, Shannon; Mayo, Quentin; Thomas, Lauren; Hoofnagle, Chris Jay (10 August 2009). "Soltani, Ashkan, Canty, Shannon, Mayo, Quentin, Thomas, Lauren and Hoofnagle, Chris Jay: Flash Cookies and Privacy". <a href="/wiki/SSRN_(identifier)" class="mw-redirect" title="SSRN (identifier)">SSRN</a>&#160;<a rel="nofollow" class="external text" href="https://papers.ssrn.com/sol3/papers.cfm?abstract_id=1446862">1446862</a>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Ajournal&amp;rft.genre=preprint&amp;rft.jtitle=Social+Science+Research+Network&amp;rft.atitle=Soltani%2C+Ashkan%2C+Canty%2C+Shannon%2C+Mayo%2C+Quentin%2C+Thomas%2C+Lauren+and+Hoofnagle%2C+Chris+Jay%3A+Flash+Cookies+and+Privacy&amp;rft.date=2009-08-10&amp;rft_id=https%3A%2F%2Fpapers.ssrn.com%2Fsol3%2Fpapers.cfm%3Fabstract_id%3D1446862%23id-name%3DSSRN&amp;rft.aulast=Soltani&amp;rft.aufirst=Ashkan&amp;rft.au=Canty%2C+Shannon&amp;rft.au=Mayo%2C+Quentin&amp;rft.au=Thomas%2C+Lauren&amp;rft.au=Hoofnagle%2C+Chris+Jay&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-27"><span class="mw-cite-backlink"><b><a href="#cite_ref-27">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://epic.org/privacy/cookies/flash.html">"Local Shared Objects -- "Flash Cookies"<span class="cs1-kern-right"></span>"</a>. Electronic Privacy Information Center. 21 July 2005. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20100416041024/http://epic.org/privacy/cookies/flash.html">Archived</a> from the original on 16 April 2010<span class="reference-accessdate">. Retrieved <span class="nowrap">8 March</span> 2010</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Local+Shared+Objects+--+%22Flash+Cookies%22&amp;rft.pub=Electronic+Privacy+Information+Center&amp;rft.date=2005-07-21&amp;rft_id=http%3A%2F%2Fepic.org%2Fprivacy%2Fcookies%2Fflash.html&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-mozilla-flashblock-28"><span class="mw-cite-backlink"><b><a href="#cite_ref-mozilla-flashblock_28-0">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFChee" class="citation web cs1"><a href="/wiki/Philip_Chee" class="mw-redirect" title="Philip Chee">Chee, Philip</a>. <a rel="nofollow" class="external text" href="https://archive.today/20130415090235/http://addons.mozilla.org/firefox/addon/flashblock">"Flashblock&#160;:: Add-ons for Firefox"</a>. <i><a href="/wiki/Mozilla_Add-ons" class="mw-redirect" title="Mozilla Add-ons">Mozilla Add-ons</a></i>. <a href="/wiki/Mozilla_Foundation" title="Mozilla Foundation">Mozilla Foundation</a>. Archived from <a rel="nofollow" class="external text" href="https://addons.mozilla.org/firefox/addon/flashblock">the original</a> on 15 April 2013.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Ajournal&amp;rft.genre=unknown&amp;rft.jtitle=Mozilla+Add-ons&amp;rft.atitle=Flashblock+%3A%3A+Add-ons+for+Firefox&amp;rft.aulast=Chee&amp;rft.aufirst=Philip&amp;rft_id=https%3A%2F%2Faddons.mozilla.org%2Ffirefox%2Faddon%2Fflashblock&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-29"><span class="mw-cite-backlink"><b><a href="#cite_ref-29">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://web.archive.org/web/20110424022058/http://www.oneitsecurity.it/01/03/2010/interview-with-charlie-miller-pwn2own/">"Pwn2Own 2010: interview with Charlie Miller"</a>. 1 March 2010. Archived from <a rel="nofollow" class="external text" href="http://www.oneitsecurity.it/01/03/2010/interview-with-charlie-miller-pwn2own/">the original</a> on 24 April 2011<span class="reference-accessdate">. Retrieved <span class="nowrap">27 March</span> 2010</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Pwn2Own+2010%3A+interview+with+Charlie+Miller&amp;rft.date=2010-03-01&amp;rft_id=http%3A%2F%2Fwww.oneitsecurity.it%2F01%2F03%2F2010%2Finterview-with-charlie-miller-pwn2own%2F&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-30"><span class="mw-cite-backlink"><b><a href="#cite_ref-30">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://news.cnet.com/8301-27080_3-10396326-245.html">"Expert says Adobe Flash policy is risky"</a>. 12 November 2009. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20110426041823/http://news.cnet.com/8301-27080_3-10396326-245.html">Archived</a> from the original on 26 April 2011<span class="reference-accessdate">. Retrieved <span class="nowrap">27 March</span> 2010</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Expert+says+Adobe+Flash+policy+is+risky&amp;rft.date=2009-11-12&amp;rft_id=http%3A%2F%2Fnews.cnet.com%2F8301-27080_3-10396326-245.html&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-31"><span class="mw-cite-backlink"><b><a href="#cite_ref-31">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFJohn_C._Mitchell" class="citation web cs1"><a href="/wiki/John_C._Mitchell" title="John C. Mitchell">John C. Mitchell</a>. <a rel="nofollow" class="external text" href="https://crypto.stanford.edu/cs155old/cs155-spring11/lectures/08-browser-sec-model.pdf">"Browser Security Model"</a> <span class="cs1-format">(PDF)</span>. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20150620051731/http://crypto.stanford.edu/cs155old/cs155-spring11/lectures/08-browser-sec-model.pdf">Archived</a> <span class="cs1-format">(PDF)</span> from the original on 20 June 2015.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Browser+Security+Model&amp;rft.au=John+C.+Mitchell&amp;rft_id=https%3A%2F%2Fcrypto.stanford.edu%2Fcs155old%2Fcs155-spring11%2Flectures%2F08-browser-sec-model.pdf&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-32"><span class="mw-cite-backlink"><b><a href="#cite_ref-32">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://feross.org/html5-fullscreen-api-attack/">"Using the HTML5 Fullscreen API for Phishing Attacks"</a>. <i>feross.org</i>. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20171225134343/https://feross.org/html5-fullscreen-api-attack/">Archived</a> from the original on 25 December 2017<span class="reference-accessdate">. Retrieved <span class="nowrap">7 May</span> 2018</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Ajournal&amp;rft.genre=unknown&amp;rft.jtitle=feross.org&amp;rft.atitle=Using+the+HTML5+Fullscreen+API+for+Phishing+Attacks&amp;rft_id=http%3A%2F%2Ffeross.org%2Fhtml5-fullscreen-api-attack%2F&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-33"><span class="mw-cite-backlink"><b><a href="#cite_ref-33">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://technet.microsoft.com/en-us/library/cc700846.aspx">"Using a Least-Privileged User Account"</a>. <a href="/wiki/Microsoft" title="Microsoft">Microsoft</a>. 29 June 2009. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20130306091913/http://technet.microsoft.com/en-us/library/cc700846.aspx">Archived</a> from the original on 6 March 2013<span class="reference-accessdate">. Retrieved <span class="nowrap">20 April</span> 2013</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Using+a+Least-Privileged+User+Account&amp;rft.pub=Microsoft&amp;rft.date=2009-06-29&amp;rft_id=https%3A%2F%2Ftechnet.microsoft.com%2Fen-us%2Flibrary%2Fcc700846.aspx&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-34"><span class="mw-cite-backlink"><b><a href="#cite_ref-34">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://support.microsoft.com/kb/240797/en-us">"How to Stop an ActiveX control from running in Internet Explorer"</a>. <a href="/wiki/Microsoft" title="Microsoft">Microsoft</a>. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20141202224151/http://support.microsoft.com/kb/240797/en-us">Archived</a> from the original on 2 December 2014<span class="reference-accessdate">. Retrieved <span class="nowrap">22 November</span> 2014</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=How+to+Stop+an+ActiveX+control+from+running+in+Internet+Explorer&amp;rft.pub=Microsoft&amp;rft_id=http%3A%2F%2Fsupport.microsoft.com%2Fkb%2F240797%2Fen-us&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-35"><span class="mw-cite-backlink"><b><a href="#cite_ref-35">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://support.microsoft.com/kb/182569/en-us">"Internet Explorer security zones registry entries for advanced users"</a>. <a href="/wiki/Microsoft" title="Microsoft">Microsoft</a>. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20141202224143/https://support.microsoft.com/kb/182569/en-us">Archived</a> from the original on 2 December 2014<span class="reference-accessdate">. Retrieved <span class="nowrap">22 November</span> 2014</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Internet+Explorer+security+zones+registry+entries+for+advanced+users&amp;rft.pub=Microsoft&amp;rft_id=https%3A%2F%2Fsupport.microsoft.com%2Fkb%2F182569%2Fen-us&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-36"><span class="mw-cite-backlink"><b><a href="#cite_ref-36">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://technet.microsoft.com/en-us/library/dn761713.aspx">"Out-of-date ActiveX control blocking"</a>. <a href="/wiki/Microsoft" title="Microsoft">Microsoft</a>. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20141129121819/http://technet.microsoft.com/en-us/library/dn761713.aspx">Archived</a> from the original on 29 November 2014<span class="reference-accessdate">. Retrieved <span class="nowrap">22 November</span> 2014</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Out-of-date+ActiveX+control+blocking&amp;rft.pub=Microsoft&amp;rft_id=https%3A%2F%2Ftechnet.microsoft.com%2Fen-us%2Flibrary%2Fdn761713.aspx&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-37"><span class="mw-cite-backlink"><b><a href="#cite_ref-37">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://technet.microsoft.com/en-us/library/cc737458.aspx">"Internet Explorer Add-on Management and Crash Detection"</a>. <a href="/wiki/Microsoft" title="Microsoft">Microsoft</a>. 8 October 2009. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20141129121822/http://technet.microsoft.com/en-us/library/cc737458.aspx">Archived</a> from the original on 29 November 2014<span class="reference-accessdate">. Retrieved <span class="nowrap">22 November</span> 2014</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Internet+Explorer+Add-on+Management+and+Crash+Detection&amp;rft.pub=Microsoft&amp;rft.date=2009-10-08&amp;rft_id=https%3A%2F%2Ftechnet.microsoft.com%2Fen-us%2Flibrary%2Fcc737458.aspx&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-38"><span class="mw-cite-backlink"><b><a href="#cite_ref-38">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://support.microsoft.com/kb/883256/en-us">"How to Manage Internet Explorer Add-ons in Windows XP Service Pack 2"</a>. <a href="/wiki/Microsoft" title="Microsoft">Microsoft</a>. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20141202192535/http://support.microsoft.com/kb/883256/en-us">Archived</a> from the original on 2 December 2014<span class="reference-accessdate">. Retrieved <span class="nowrap">22 November</span> 2014</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=How+to+Manage+Internet+Explorer+Add-ons+in+Windows+XP+Service+Pack+2&amp;rft.pub=Microsoft&amp;rft_id=http%3A%2F%2Fsupport.microsoft.com%2Fkb%2F883256%2Fen-us&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-symantec-39"><span class="mw-cite-backlink"><b><a href="#cite_ref-symantec_39-0">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFMatthew_Conover" class="citation web cs1">Matthew Conover. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20080516053130/http://www.symantec.com/avcenter/reference/Windows_Vista_Security_Model_Analysis.pdf">"Analysis of the Windows Vista Security Model"</a> <span class="cs1-format">(PDF)</span>. <a href="/wiki/Symantec_Corporation" class="mw-redirect" title="Symantec Corporation">Symantec Corporation</a>. Archived from <a rel="nofollow" class="external text" href="http://www.symantec.com/avcenter/reference/Windows_Vista_Security_Model_Analysis.pdf">the original</a> <span class="cs1-format">(PDF)</span> on 16 May 2008<span class="reference-accessdate">. Retrieved <span class="nowrap">8 October</span> 2007</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Analysis+of+the+Windows+Vista+Security+Model&amp;rft.pub=Symantec+Corporation&amp;rft.au=Matthew+Conover&amp;rft_id=http%3A%2F%2Fwww.symantec.com%2Favcenter%2Freference%2FWindows_Vista_Security_Model_Analysis.pdf&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-40"><span class="mw-cite-backlink"><b><a href="#cite_ref-40">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://cacm.acm.org/magazines/2009/8/34494-browser-security/fulltext">"Browser Security: Lessons from Google Chrome"</a>. August 2009. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20131111194250/http://cacm.acm.org/magazines/2009/8/34494-browser-security/fulltext">Archived</a> from the original on 11 November 2013.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Browser+Security%3A+Lessons+from+Google+Chrome&amp;rft.date=2009-08&amp;rft_id=http%3A%2F%2Fcacm.acm.org%2Fmagazines%2F2009%2F8%2F34494-browser-security%2Ffulltext&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-41"><span class="mw-cite-backlink"><b><a href="#cite_ref-41">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://www.google.com/safebrowsing/report_badware/">"Report malicious software (URL) to Google"</a>. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20140912233915/https://www.google.com/safebrowsing/report_badware/">Archived</a> from the original on 12 September 2014.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Report+malicious+software+%28URL%29+to+Google&amp;rft_id=https%3A%2F%2Fwww.google.com%2Fsafebrowsing%2Freport_badware%2F&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-42"><span class="mw-cite-backlink"><b><a href="#cite_ref-42">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://www.google.com/transparencyreport/safebrowsing/?hl=en">"Google Safe Browsing"</a>. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20140914200617/http://www.google.com/transparencyreport/safebrowsing/?hl=en">Archived</a> from the original on 14 September 2014.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Google+Safe+Browsing&amp;rft_id=https%3A%2F%2Fwww.google.com%2Ftransparencyreport%2Fsafebrowsing%2F%3Fhl%3Den&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-43"><span class="mw-cite-backlink"><b><a href="#cite_ref-43">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://www.zonealarm.com/blog/2014/05/5-ways-to-secure-your-web-browser/">"5 Ways to Secure Your Web Browser"</a>. <a href="/wiki/ZoneAlarm" title="ZoneAlarm">ZoneAlarm</a>. 8 May 2014. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20140907191153/http://www.zonealarm.com/blog/2014/05/5-ways-to-secure-your-web-browser/">Archived</a> from the original on 7 September 2014.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=5+Ways+to+Secure+Your+Web+Browser&amp;rft.pub=ZoneAlarm&amp;rft.date=2014-05-08&amp;rft_id=http%3A%2F%2Fwww.zonealarm.com%2Fblog%2F2014%2F05%2F5-ways-to-secure-your-web-browser%2F&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-44"><span class="mw-cite-backlink"><b><a href="#cite_ref-44">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://siliconfilter.com/adblock-plus-will-soon-block-fewer-ads-by-default-allow-non-intrusive-ads/">"Adblock Plus Will Soon Block Fewer Ads – SiliconFilter"</a>. Siliconfilter.com. 12 December 2011. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20130130044410/http://siliconfilter.com/adblock-plus-will-soon-block-fewer-ads-by-default-allow-non-intrusive-ads/">Archived</a> from the original on 30 January 2013<span class="reference-accessdate">. Retrieved <span class="nowrap">20 April</span> 2013</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Adblock+Plus+Will+Soon+Block+Fewer+Ads+%E2%80%93+SiliconFilter&amp;rft.pub=Siliconfilter.com&amp;rft.date=2011-12-12&amp;rft_id=http%3A%2F%2Fsiliconfilter.com%2Fadblock-plus-will-soon-block-fewer-ads-by-default-allow-non-intrusive-ads%2F&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-45"><span class="mw-cite-backlink"><b><a href="#cite_ref-45">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://www.us-cert.gov/reading_room/securing_browser/">"Securing Your Web Browser"</a>. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20100326131333/http://www.us-cert.gov/reading_room/securing_browser/">Archived</a> from the original on 26 March 2010<span class="reference-accessdate">. Retrieved <span class="nowrap">27 March</span> 2010</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Securing+Your+Web+Browser&amp;rft_id=http%3A%2F%2Fwww.us-cert.gov%2Freading_room%2Fsecuring_browser%2F&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-Security-46"><span class="mw-cite-backlink">^ <a href="#cite_ref-Security_46-0"><sup><i><b>a</b></i></sup></a> <a href="#cite_ref-Security_46-1"><sup><i><b>b</b></i></sup></a></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFSesterhennWeverOrrùVervier2017" class="citation web cs1">Sesterhenn, Eric; Wever, Berend-Jan; Orrù, Michele; Vervier, Markus (19 September 2017). <a rel="nofollow" class="external text" href="https://browser-security.x41-dsec.de/X41-Browser-Security-White-Paper.pdf">"Browser Security WhitePaper"</a> <span class="cs1-format">(PDF)</span>. X41D SEC GmbH. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20220201150016/https://browser-security.x41-dsec.de/X41-Browser-Security-White-Paper.pdf">Archived</a> <span class="cs1-format">(PDF)</span> from the original on 1 February 2022<span class="reference-accessdate">. Retrieved <span class="nowrap">31 August</span> 2018</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Browser+Security+WhitePaper&amp;rft.pub=X41D+SEC+GmbH&amp;rft.date=2017-09-19&amp;rft.aulast=Sesterhenn&amp;rft.aufirst=Eric&amp;rft.au=Wever%2C+Berend-Jan&amp;rft.au=Orr%C3%B9%2C+Michele&amp;rft.au=Vervier%2C+Markus&amp;rft_id=https%3A%2F%2Fbrowser-security.x41-dsec.de%2FX41-Browser-Security-White-Paper.pdf&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> <li id="cite_note-47"><span class="mw-cite-backlink"><b><a href="#cite_ref-47">^</a></b></span> <span class="reference-text"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://docs.microsoft.com/en-us/microsoft-edge/deploy/security-enhancements-microsoft-edge">"Security enhancements for Microsoft Edge (Microsoft Edge for IT Pros)"</a>. <a href="/wiki/Microsoft" title="Microsoft">Microsoft</a>. 15 October 2017. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20180901044418/https://docs.microsoft.com/en-us/microsoft-edge/deploy/security-enhancements-microsoft-edge">Archived</a> from the original on 1 September 2018<span class="reference-accessdate">. Retrieved <span class="nowrap">31 August</span> 2018</span>.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Security+enhancements+for+Microsoft+Edge+%28Microsoft+Edge+for+IT+Pros%29&amp;rft.pub=Microsoft&amp;rft.date=2017-10-15&amp;rft_id=https%3A%2F%2Fdocs.microsoft.com%2Fen-us%2Fmicrosoft-edge%2Fdeploy%2Fsecurity-enhancements-microsoft-edge&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></span> </li> </ol></div></div> <div class="mw-heading mw-heading2"><h2 id="Further_reading">Further reading</h2><span class="mw-editsection"><span class="mw-editsection-bracket">[</span><a href="/w/index.php?title=Browser_security&amp;action=edit&amp;section=10" title="Edit section: Further reading"><span>edit</span></a><span class="mw-editsection-bracket">]</span></span></div> <ul><li><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFSesterhennWeverOrrùVervier2017" class="citation web cs1">Sesterhenn, Eric; Wever, Berend-Jan; Orrù, Michele; Vervier, Markus (19 September 2017). <a rel="nofollow" class="external text" href="https://browser-security.x41-dsec.de/X41-Browser-Security-White-Paper.pdf">"Browser Security White Paper"</a> <span class="cs1-format">(PDF)</span>. X41D SEC GmbH.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Browser+Security+White+Paper&amp;rft.pub=X41D+SEC+GmbH&amp;rft.date=2017-09-19&amp;rft.aulast=Sesterhenn&amp;rft.aufirst=Eric&amp;rft.au=Wever%2C+Berend-Jan&amp;rft.au=Orr%C3%B9%2C+Michele&amp;rft.au=Vervier%2C+Markus&amp;rft_id=https%3A%2F%2Fbrowser-security.x41-dsec.de%2FX41-Browser-Security-White-Paper.pdf&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></li> <li><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1238218222"><cite id="CITEREFHeiderichInführFäßlerKrein2017" class="citation web cs1">Heiderich, Mario; Inführ, Alex; Fäßler, Fabian; Krein, Nikolai; Kinugawa, Masato (29 November 2017). <a rel="nofollow" class="external text" href="https://cure53.de/browser-security-whitepaper.pdf">"Cure53 Browser Security White Paper"</a> <span class="cs1-format">(PDF)</span>. Cure53.</cite><span title="ctx_ver=Z39.88-2004&amp;rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&amp;rft.genre=unknown&amp;rft.btitle=Cure53+Browser+Security+White+Paper&amp;rft.pub=Cure53&amp;rft.date=2017-11-29&amp;rft.aulast=Heiderich&amp;rft.aufirst=Mario&amp;rft.au=Inf%C3%BChr%2C+Alex&amp;rft.au=F%C3%A4%C3%9Fler%2C+Fabian&amp;rft.au=Krein%2C+Nikolai&amp;rft.au=Kinugawa%2C+Masato&amp;rft_id=https%3A%2F%2Fcure53.de%2Fbrowser-security-whitepaper.pdf&amp;rfr_id=info%3Asid%2Fen.wikipedia.org%3ABrowser+security" class="Z3988"></span></li></ul> <div class="navbox-styles"><style data-mw-deduplicate="TemplateStyles:r1129693374">.mw-parser-output .hlist dl,.mw-parser-output .hlist ol,.mw-parser-output .hlist ul{margin:0;padding:0}.mw-parser-output .hlist dd,.mw-parser-output .hlist dt,.mw-parser-output .hlist li{margin:0;display:inline}.mw-parser-output .hlist.inline,.mw-parser-output .hlist.inline dl,.mw-parser-output .hlist.inline ol,.mw-parser-output .hlist.inline ul,.mw-parser-output .hlist dl dl,.mw-parser-output .hlist dl ol,.mw-parser-output .hlist dl ul,.mw-parser-output .hlist ol dl,.mw-parser-output .hlist ol ol,.mw-parser-output .hlist ol ul,.mw-parser-output .hlist ul dl,.mw-parser-output .hlist ul ol,.mw-parser-output .hlist ul ul{display:inline}.mw-parser-output .hlist .mw-empty-li{display:none}.mw-parser-output .hlist dt::after{content:": "}.mw-parser-output .hlist dd::after,.mw-parser-output .hlist li::after{content:" · ";font-weight:bold}.mw-parser-output .hlist dd:last-child::after,.mw-parser-output .hlist dt:last-child::after,.mw-parser-output .hlist li:last-child::after{content:none}.mw-parser-output .hlist dd dd:first-child::before,.mw-parser-output .hlist dd dt:first-child::before,.mw-parser-output .hlist dd li:first-child::before,.mw-parser-output .hlist dt dd:first-child::before,.mw-parser-output .hlist dt dt:first-child::before,.mw-parser-output .hlist dt li:first-child::before,.mw-parser-output .hlist li dd:first-child::before,.mw-parser-output .hlist li dt:first-child::before,.mw-parser-output .hlist li li:first-child::before{content:" (";font-weight:normal}.mw-parser-output .hlist dd dd:last-child::after,.mw-parser-output .hlist dd dt:last-child::after,.mw-parser-output .hlist dd li:last-child::after,.mw-parser-output .hlist dt dd:last-child::after,.mw-parser-output .hlist dt dt:last-child::after,.mw-parser-output .hlist dt li:last-child::after,.mw-parser-output .hlist li dd:last-child::after,.mw-parser-output .hlist li dt:last-child::after,.mw-parser-output .hlist li li:last-child::after{content:")";font-weight:normal}.mw-parser-output .hlist ol{counter-reset:listitem}.mw-parser-output .hlist ol>li{counter-increment:listitem}.mw-parser-output .hlist ol>li::before{content:" "counter(listitem)"\a0 "}.mw-parser-output .hlist dd ol>li:first-child::before,.mw-parser-output .hlist dt ol>li:first-child::before,.mw-parser-output .hlist li ol>li:first-child::before{content:" ("counter(listitem)"\a0 "}</style><style data-mw-deduplicate="TemplateStyles:r1236075235">.mw-parser-output .navbox{box-sizing:border-box;border:1px solid #a2a9b1;width:100%;clear:both;font-size:88%;text-align:center;padding:1px;margin:1em auto 0}.mw-parser-output .navbox .navbox{margin-top:0}.mw-parser-output .navbox+.navbox,.mw-parser-output .navbox+.navbox-styles+.navbox{margin-top:-1px}.mw-parser-output .navbox-inner,.mw-parser-output .navbox-subgroup{width:100%}.mw-parser-output .navbox-group,.mw-parser-output .navbox-title,.mw-parser-output .navbox-abovebelow{padding:0.25em 1em;line-height:1.5em;text-align:center}.mw-parser-output .navbox-group{white-space:nowrap;text-align:right}.mw-parser-output .navbox,.mw-parser-output .navbox-subgroup{background-color:#fdfdfd}.mw-parser-output .navbox-list{line-height:1.5em;border-color:#fdfdfd}.mw-parser-output .navbox-list-with-group{text-align:left;border-left-width:2px;border-left-style:solid}.mw-parser-output tr+tr>.navbox-abovebelow,.mw-parser-output tr+tr>.navbox-group,.mw-parser-output tr+tr>.navbox-image,.mw-parser-output tr+tr>.navbox-list{border-top:2px solid #fdfdfd}.mw-parser-output .navbox-title{background-color:#ccf}.mw-parser-output .navbox-abovebelow,.mw-parser-output .navbox-group,.mw-parser-output .navbox-subgroup .navbox-title{background-color:#ddf}.mw-parser-output .navbox-subgroup .navbox-group,.mw-parser-output .navbox-subgroup .navbox-abovebelow{background-color:#e6e6ff}.mw-parser-output .navbox-even{background-color:#f7f7f7}.mw-parser-output .navbox-odd{background-color:transparent}.mw-parser-output .navbox .hlist td dl,.mw-parser-output .navbox .hlist td ol,.mw-parser-output .navbox .hlist td ul,.mw-parser-output .navbox td.hlist dl,.mw-parser-output .navbox td.hlist ol,.mw-parser-output .navbox td.hlist ul{padding:0.125em 0}.mw-parser-output .navbox .navbar{display:block;font-size:100%}.mw-parser-output .navbox-title .navbar{float:left;text-align:left;margin-right:0.5em}body.skin--responsive .mw-parser-output .navbox-image img{max-width:none!important}@media print{body.ns-0 .mw-parser-output .navbox{display:none!important}}</style></div><div role="navigation" class="navbox" aria-labelledby="Web_browsers182" style="padding:3px"><table class="nowraplinks hlist mw-collapsible autocollapse navbox-inner" style="border-spacing:0;background:transparent;color:inherit"><tbody><tr><th scope="col" class="navbox-title" colspan="2"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1129693374"><style data-mw-deduplicate="TemplateStyles:r1239400231">.mw-parser-output .navbar{display:inline;font-size:88%;font-weight:normal}.mw-parser-output .navbar-collapse{float:left;text-align:left}.mw-parser-output .navbar-boxtext{word-spacing:0}.mw-parser-output .navbar ul{display:inline-block;white-space:nowrap;line-height:inherit}.mw-parser-output .navbar-brackets::before{margin-right:-0.125em;content:"[ "}.mw-parser-output .navbar-brackets::after{margin-left:-0.125em;content:" ]"}.mw-parser-output .navbar li{word-spacing:-0.125em}.mw-parser-output .navbar a>span,.mw-parser-output .navbar a>abbr{text-decoration:inherit}.mw-parser-output .navbar-mini abbr{font-variant:small-caps;border-bottom:none;text-decoration:none;cursor:inherit}.mw-parser-output .navbar-ct-full{font-size:114%;margin:0 7em}.mw-parser-output .navbar-ct-mini{font-size:114%;margin:0 4em}html.skin-theme-clientpref-night .mw-parser-output .navbar li a abbr{color:var(--color-base)!important}@media(prefers-color-scheme:dark){html.skin-theme-clientpref-os .mw-parser-output .navbar li a abbr{color:var(--color-base)!important}}@media print{.mw-parser-output .navbar{display:none!important}}</style><div class="navbar plainlinks hlist navbar-mini"><ul><li class="nv-view"><a href="/wiki/Template:Web_browsers" title="Template:Web browsers"><abbr title="View this template">v</abbr></a></li><li class="nv-talk"><a href="/wiki/Template_talk:Web_browsers" title="Template talk:Web browsers"><abbr title="Discuss this template">t</abbr></a></li><li class="nv-edit"><a href="/wiki/Special:EditPage/Template:Web_browsers" title="Special:EditPage/Template:Web browsers"><abbr title="Edit this template">e</abbr></a></li></ul></div><div id="Web_browsers182" style="font-size:114%;margin:0 4em"><a href="/wiki/Web_browser" title="Web browser">Web browsers</a></div></th></tr><tr><td colspan="2" class="navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em"></div><table class="nowraplinks mw-collapsible uncollapsed navbox-subgroup" style="border-spacing:0"><tbody><tr><th scope="col" class="navbox-title" colspan="2"><div id="*_Features_*_standards_*_protocols182" style="font-size:114%;margin:0 4em"> <ul><li>Features</li> <li>standards</li> <li>protocols</li></ul> </div></th></tr><tr><td colspan="2" class="navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em"></div><table class="nowraplinks navbox-subgroup" style="border-spacing:0"><tbody><tr><th scope="row" class="navbox-group" style="width:1%">Features</th><td class="navbox-list-with-group navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em"> <ul><li><a href="/wiki/Bookmark_(digital)" title="Bookmark (digital)">Bookmarks</a></li> <li><a href="/wiki/Browser_extension" title="Browser extension">Extensions</a></li> <li><a href="/wiki/Private_browsing" title="Private browsing">Privacy mode</a></li></ul> </div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%"><a href="/wiki/Web_standards" title="Web standards">Web standards</a></th><td class="navbox-list-with-group navbox-list navbox-even" style="width:100%;padding:0"><div style="padding:0 0.25em"> <ul><li><a href="/wiki/HTML" title="HTML">HTML</a> <ul><li><a href="/wiki/HTML5" title="HTML5">v5</a></li></ul></li> <li><a href="/wiki/CSS" title="CSS">CSS</a></li> <li><a href="/wiki/Document_Object_Model" title="Document Object Model">DOM</a></li> <li><a href="/wiki/JavaScript" title="JavaScript">JavaScript</a> <ul><li><a href="/wiki/WebAssembly" title="WebAssembly">WebAssembly</a></li> <li><a href="/wiki/Web_storage" title="Web storage">Web storage</a></li> <li><a href="/wiki/Indexed_Database_API" title="Indexed Database API">IndexedDB</a></li> <li><a href="/wiki/WebGL" title="WebGL">WebGL</a></li> <li><a href="/wiki/WebGPU" title="WebGPU">WebGPU</a></li></ul></li></ul> </div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Protocols</th><td class="navbox-list-with-group navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em"> <ul><li><a href="/wiki/HTTP" title="HTTP">HTTP</a> <ul><li><a href="/wiki/HTTPS" title="HTTPS">Encryption</a></li> <li><a href="/wiki/HTTP_cookie" title="HTTP cookie">Cookies</a> <ul><li><a href="/wiki/Third-party_cookies" title="Third-party cookies">third-party</a></li></ul></li></ul></li> <li><a href="/wiki/Online_Certificate_Status_Protocol" title="Online Certificate Status Protocol">OCSP</a></li> <li><a href="/wiki/WebRTC" title="WebRTC">WebRTC</a></li> <li><a href="/wiki/WebSocket" title="WebSocket">WebSocket</a></li></ul> </div></td></tr></tbody></table><div></div></td></tr></tbody></table><div></div></td></tr><tr><td colspan="2" class="navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em"></div><table class="nowraplinks mw-collapsible mw-collapsed navbox-subgroup" style="border-spacing:0"><tbody><tr><th scope="col" class="navbox-title" colspan="2"><div id="Active182" style="font-size:114%;margin:0 4em">Active</div></th></tr><tr><td colspan="2" class="navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em"></div><table class="nowraplinks navbox-subgroup" style="border-spacing:0"><tbody><tr><th scope="row" class="navbox-group" style="width:1%"><a href="/wiki/Blink_(browser_engine)" title="Blink (browser engine)">Blink</a>-based</th><td class="navbox-list-with-group navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em"></div><table class="nowraplinks navbox-subgroup" style="border-spacing:0"><tbody><tr><th scope="row" class="navbox-group" style="width:1%"><a href="/wiki/Proprietary_software" title="Proprietary software">Proprietary</a></th><td class="navbox-list-with-group navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em"> <ul><li><a href="/wiki/Google_Chrome" title="Google Chrome">Google Chrome</a></li> <li><a href="/wiki/Arc_(web_browser)" title="Arc (web browser)">Arc</a></li> <li><a href="/wiki/Avast_Secure_Browser" title="Avast Secure Browser">Avast</a></li> <li><a href="/wiki/C%E1%BB%91c_C%E1%BB%91c" title="Cốc Cốc">Coc Coc</a></li> <li><a href="/wiki/Comodo_Dragon" title="Comodo Dragon">Comodo</a></li> <li><a href="/wiki/Epic_(web_browser)" title="Epic (web browser)">Epic</a></li> <li><a href="/wiki/Huawei_Mobile_Services" title="Huawei Mobile Services">Huawei</a></li> <li><a href="/wiki/Maxthon" title="Maxthon">Maxthon</a></li> <li><a href="/wiki/Microsoft_Edge" title="Microsoft Edge">Microsoft Edge</a></li> <li><a href="/wiki/Opera_(web_browser)" title="Opera (web browser)">Opera</a> (<a href="/wiki/Opera_Mobile" title="Opera Mobile">Mobile</a>)</li> <li><a href="/wiki/Puffin_Browser" title="Puffin Browser">Puffin </a></li> <li><a href="/wiki/QQ_Browser" title="QQ Browser">QQ</a></li> <li><a href="/wiki/Samsung_Internet" title="Samsung Internet">Samsung</a></li> <li><a href="/wiki/Amazon_Silk" title="Amazon Silk">Silk</a></li> <li><a href="/wiki/Sleipnir_(web_browser)" title="Sleipnir (web browser)">Sleipnir</a></li> <li><a href="/wiki/SRWare_Iron" title="SRWare Iron">SRWare</a></li> <li><a href="/wiki/UC_Browser" title="UC Browser">UC</a></li> <li><a href="/wiki/Vivaldi_(web_browser)" title="Vivaldi (web browser)">Vivaldi</a></li> <li><a href="/wiki/Naver_Whale" title="Naver Whale">Whale</a></li> <li><a href="/wiki/Yandex_Browser" title="Yandex Browser">Yandex</a></li></ul> </div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%"><a href="/wiki/Free_and_Open_Source" class="mw-redirect" title="Free and Open Source">FOSS</a></th><td class="navbox-list-with-group navbox-list navbox-even" style="width:100%;padding:0"><div style="padding:0 0.25em"> <ul><li><a href="/wiki/Chromium_(web_browser)" title="Chromium (web browser)">Chromium</a></li> <li><a href="/wiki/Brave_(web_browser)" title="Brave (web browser)">Brave</a></li> <li><a href="/wiki/Dooble" title="Dooble">Dooble</a></li> <li><a href="/wiki/Falkon" title="Falkon">Falkon</a></li> <li><a href="/wiki/Otter_Browser" title="Otter Browser">Otter</a></li> <li><a href="/wiki/Supermium" title="Supermium">Supermium</a></li> <li><a href="/wiki/Ungoogled-chromium" title="Ungoogled-chromium">ungoogled</a></li></ul> </div></td></tr></tbody></table><div></div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%"><a href="/wiki/Gecko_(software)" title="Gecko (software)">Gecko</a>-based</th><td class="navbox-list-with-group navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em"> <ul><li><a href="/wiki/Firefox" title="Firefox">Firefox</a></li> <li><a href="/wiki/Floorp" title="Floorp">Floorp</a></li> <li><a href="/wiki/GNU_IceCat" title="GNU IceCat">GNU IceCat</a></li> <li><a href="/wiki/LibreWolf" title="LibreWolf">LibreWolf</a></li> <li><a href="/wiki/Midori_(web_browser)" title="Midori (web browser)">Midori</a></li> <li><a href="/wiki/SlimBrowser" title="SlimBrowser">SlimBrowser</a></li> <li><a href="/wiki/Tor_Browser" class="mw-redirect" title="Tor Browser">Tor</a></li> <li><a href="/wiki/Zen_Browser" title="Zen Browser">Zen</a></li> <li>Gecko <a href="/wiki/Fork_(software_development)" title="Fork (software development)">forks</a> <ul><li><a href="/wiki/Basilisk_(web_browser)" title="Basilisk (web browser)">Basilisk</a></li> <li><a href="/wiki/K-Meleon" title="K-Meleon">K-Meleon</a></li> <li><a href="/wiki/Pale_Moon" title="Pale Moon">Pale Moon</a></li> <li><a href="/wiki/SeaMonkey" title="SeaMonkey">SeaMonkey</a></li> <li><a href="/wiki/Waterfox" title="Waterfox">Waterfox</a></li></ul></li></ul> </div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%"><a href="/wiki/WebKit" title="WebKit">WebKit</a>-based</th><td class="navbox-list-with-group navbox-list navbox-even" style="width:100%;padding:0"><div style="padding:0 0.25em"> <ul><li><a href="/wiki/Safari_(web_browser)" title="Safari (web browser)">Safari</a></li> <li><a href="/wiki/GNOME_Web" title="GNOME Web">GNOME Web</a></li> <li><a href="/wiki/ICab" title="ICab">iCab</a></li> <li><a href="/wiki/Kagi_(search_engine)#Orion_Browser" title="Kagi (search engine)">Orion</a></li></ul> </div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Multi-<a href="/wiki/Browser_engine" title="Browser engine">engine</a></th><td class="navbox-list-with-group navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em"> <ul><li><a href="/wiki/360_Secure_Browser" title="360 Secure Browser">360</a></li> <li><a href="/wiki/DuckDuckGo_Private_Browser" title="DuckDuckGo Private Browser">DuckDuckGo</a></li> <li><a href="/wiki/Konqueror" title="Konqueror">Konqueror</a></li> <li><a href="/wiki/Lunascape" title="Lunascape">Lunascape</a></li> <li><a href="/wiki/NetFront" title="NetFront">NetFront</a></li> <li><a href="/wiki/Qutebrowser" title="Qutebrowser">qutebrowser</a></li></ul> </div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Other</th><td class="navbox-list-with-group navbox-list navbox-even" style="width:100%;padding:0"><div style="padding:0 0.25em"> <ul><li><a href="/wiki/Eww_(web_browser)" title="Eww (web browser)">eww</a></li> <li><a href="/wiki/Flow_(web_browser)" title="Flow (web browser)">Flow</a></li> <li><a href="/wiki/Ladybird_(web_browser)" title="Ladybird (web browser)">Ladybird</a></li> <li><a href="/wiki/Links_(web_browser)" title="Links (web browser)">Links</a></li> <li><a href="/wiki/Lynx_(web_browser)" title="Lynx (web browser)">Lynx</a></li> <li><a href="/wiki/NetSurf" title="NetSurf">NetSurf</a></li> <li><a href="/wiki/Opera_Mini" title="Opera Mini">Opera Mini</a></li> <li><a href="/wiki/W3m" title="W3m">w3m</a></li></ul> </div></td></tr></tbody></table><div></div></td></tr></tbody></table><div></div></td></tr><tr><td colspan="2" class="navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em"></div><table class="nowraplinks mw-collapsible mw-collapsed navbox-subgroup" style="border-spacing:0"><tbody><tr><th scope="col" class="navbox-title" colspan="2"><div id="Discontinued182" style="font-size:114%;margin:0 4em">Discontinued</div></th></tr><tr><td colspan="2" class="navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em"></div><table class="nowraplinks navbox-subgroup" style="border-spacing:0"><tbody><tr><th scope="row" class="navbox-group" style="width:1%"><a href="/wiki/Blink_(browser_engine)" title="Blink (browser engine)">Blink</a>-based</th><td class="navbox-list-with-group navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em"> <ul><li><a href="/wiki/Beaker_(web_browser)" title="Beaker (web browser)">Beaker</a></li> <li><a href="/wiki/Citrio" title="Citrio">Citrio</a></li> <li><a href="/wiki/Flock_(web_browser)" title="Flock (web browser)">Flock</a></li> <li><a href="/wiki/Redcore" title="Redcore">Redcore</a></li> <li><a href="/wiki/Rockmelt" title="Rockmelt">Rockmelt</a></li> <li><a href="/wiki/SalamWeb" title="SalamWeb">SalamWeb</a></li> <li><a href="/wiki/Sputnik_(search_engine)#Browser" title="Sputnik (search engine)">Sputnik</a></li> <li><a href="/wiki/Torch_(web_browser)" title="Torch (web browser)">Torch</a></li></ul> </div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%"><a href="/wiki/Gecko_(software)" title="Gecko (software)">Gecko</a>-based</th><td class="navbox-list-with-group navbox-list navbox-even" style="width:100%;padding:0"><div style="padding:0 0.25em"> <ul><li><a href="/wiki/Beonex_Communicator" title="Beonex Communicator">Beonex</a></li> <li><a href="/wiki/Camino_(web_browser)" title="Camino (web browser)">Camino</a></li> <li><a href="/wiki/Classilla" title="Classilla">Classilla</a></li> <li><a href="/wiki/Conkeror" title="Conkeror">Conkeror</a></li> <li><a href="/wiki/Firefox_Lite" title="Firefox Lite">Firefox Lite</a></li> <li><a href="/wiki/Galeon" title="Galeon">Galeon</a></li> <li><a href="/wiki/Ghostzilla" title="Ghostzilla">Ghostzilla</a></li> <li><a href="/wiki/Comodo_IceDragon" title="Comodo IceDragon">IceDragon</a></li> <li><a href="/wiki/Kazehakase" title="Kazehakase">Kazehakase</a></li> <li><a href="/wiki/Kylo_(web_browser)" title="Kylo (web browser)">Kylo</a></li> <li><a href="/wiki/IBM_Lotus_Symphony" title="IBM Lotus Symphony">Lotus</a></li> <li><a href="/wiki/MicroB" title="MicroB">MicroB</a></li> <li><a href="/wiki/Minimo" title="Minimo">Minimo</a></li> <li><a href="/wiki/Mozilla_Application_Suite" title="Mozilla Application Suite">Mozilla suite</a></li> <li><a href="/wiki/PirateBrowser" title="PirateBrowser">PirateBrowser</a></li> <li><a href="/wiki/AT%26T_Pogo" title="AT&amp;T Pogo">Pogo</a></li> <li><a href="/wiki/Kirix_Strata" title="Kirix Strata">Strata</a></li> <li><a href="/wiki/Swiftfox" title="Swiftfox">Swiftfox</a></li> <li><a href="/wiki/Swiftweasel" title="Swiftweasel">Swiftweasel</a></li> <li><a href="/wiki/TenFourFox" class="mw-redirect" title="TenFourFox">TenFourFox</a></li> <li><a href="/wiki/Timberwolf_(web_browser)" title="Timberwolf (web browser)">Timberwolf</a></li> <li><a href="/wiki/XB_Browser" title="XB Browser">xB</a></li></ul> </div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%"><a href="/wiki/Trident_(software)" title="Trident (software)">MSHTML</a>-based</th><td class="navbox-list-with-group navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em"> <ul><li><a href="/wiki/Internet_Explorer" title="Internet Explorer">Internet Explorer</a></li> <li><a href="/wiki/AOL_Explorer" title="AOL Explorer">AOL</a></li> <li><a href="/wiki/Deepnet_Explorer" title="Deepnet Explorer">Deepnet</a></li> <li><a href="/wiki/GreenBrowser" title="GreenBrowser">GreenBrowser</a></li> <li><a href="/wiki/MediaBrowser" title="MediaBrowser">MediaBrowser</a></li> <li><a href="/wiki/NeoPlanet" title="NeoPlanet">NeoPlanet</a></li> <li><a href="/wiki/NetCaptor" title="NetCaptor">NetCaptor</a></li> <li><a href="/wiki/SpaceTime_(software)#SpaceTime_Browser" title="SpaceTime (software)">SpaceTime</a></li> <li><a href="/wiki/ZAC_Browser" title="ZAC Browser">ZAC</a></li></ul> </div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%"><a href="/wiki/WebKit" title="WebKit">WebKit</a>-based</th><td class="navbox-list-with-group navbox-list navbox-even" style="width:100%;padding:0"><div style="padding:0 0.25em"> <ul><li><a href="/wiki/Arora_(web_browser)" title="Arora (web browser)">Arora</a></li> <li><a href="/wiki/Bolt_(web_browser)" title="Bolt (web browser)">BOLT</a></li> <li><a href="/wiki/Dolphin_Browser" title="Dolphin Browser">Dolphin</a></li> <li><a href="/wiki/Fluid_(web_browser)" title="Fluid (web browser)">Fluid</a></li> <li><a href="/wiki/Google_TV_(smart_TV_platform)" class="mw-redirect" title="Google TV (smart TV platform)">Google TV</a></li> <li><a href="/wiki/Iris_Browser" title="Iris Browser">Iris</a></li> <li><a href="/wiki/Mercury_Browser" title="Mercury Browser">Mercury</a></li> <li><a href="/wiki/Nokia_Browser_for_Symbian" title="Nokia Browser for Symbian">Nokia Symbian</a></li> <li><a href="/wiki/OmniWeb" title="OmniWeb">OmniWeb</a></li> <li><a href="/wiki/Opera_Coast" title="Opera Coast">Opera Coast</a></li> <li><a href="/wiki/Origyn_Web_Browser" title="Origyn Web Browser">Origyn</a></li> <li><a href="/wiki/QtWeb" title="QtWeb">QtWeb</a></li> <li><a href="/wiki/Shiira" title="Shiira">Shiira</a></li> <li><a href="/wiki/Steel_(web_browser)" title="Steel (web browser)">Steel</a></li> <li><a href="/wiki/Surf_(web_browser)" title="Surf (web browser)">surf</a></li> <li><a href="/wiki/Uzbl" title="Uzbl">Uzbl</a></li> <li><a href="/wiki/WebPositive" class="mw-redirect" title="WebPositive">WebPositive</a></li> <li><a href="/wiki/Xombrero" title="Xombrero">xombrero</a></li></ul> </div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Other</th><td class="navbox-list-with-group navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em"> <ul><li><a href="/wiki/Abaco_(web_browser)" title="Abaco (web browser)">abaco</a></li> <li><a href="/wiki/Amaya_(web_editor)" title="Amaya (web editor)">Amaya</a></li> <li><a href="/wiki/Arachne_(web_browser)" title="Arachne (web browser)">Arachne</a></li> <li><a href="/wiki/Arena_(web_browser)" title="Arena (web browser)">Arena</a></li> <li><a href="/wiki/Blazer_(web_browser)" title="Blazer (web browser)">Blazer</a></li> <li><a href="/wiki/Cake_Browser" title="Cake Browser">Cake</a></li> <li><a href="/wiki/Charon_(web_browser)" title="Charon (web browser)">Charon</a></li> <li><a href="/wiki/CM_Browser" title="CM Browser">CM</a></li> <li><a href="/wiki/Microsoft_Live_Labs_Deepfish" title="Microsoft Live Labs Deepfish">Deepfish</a></li> <li><a href="/wiki/Dillo" title="Dillo">Dillo</a></li> <li><a href="/wiki/Microsoft_Edge_Legacy" title="Microsoft Edge Legacy">Edge Legacy</a></li> <li><a href="/wiki/ELinks" title="ELinks">ELinks</a></li> <li><a href="/wiki/Gazelle_(web_browser)" title="Gazelle (web browser)">Gazelle</a></li> <li><a href="/wiki/HotJava" title="HotJava">HotJava</a></li> <li><a href="/wiki/IBM_Home_Page_Reader" title="IBM Home Page Reader">IBM Home Page Reader</a></li> <li><a href="/wiki/IBM_WebExplorer" title="IBM WebExplorer">IBM WebExplorer</a></li> <li><a href="/wiki/IBrowse" title="IBrowse">IBrowse</a></li> <li><a href="/wiki/Internet_Explorer_for_Mac" title="Internet Explorer for Mac">Internet Explorer for Mac</a></li> <li><a href="/wiki/KidZui" title="KidZui">KidZui</a></li> <li><a href="/wiki/Line_Mode_Browser" title="Line Mode Browser">Line Mode</a></li> <li><a href="/wiki/Mosaic_(web_browser)" class="mw-redirect" title="Mosaic (web browser)">Mosaic</a></li> <li><a href="/wiki/MSN_TV" title="MSN TV">MSN TV</a></li> <li><a href="/wiki/NetPositive" class="mw-redirect" title="NetPositive">NetPositive</a></li> <li><a href="/wiki/Netscape_(web_browser)" title="Netscape (web browser)">Netscape</a></li> <li><a href="/wiki/Skweezer" title="Skweezer">Skweezer</a></li> <li><a href="/wiki/Skyfire_(company)" title="Skyfire (company)">Skyfire</a></li> <li><a href="/wiki/ThunderHawk" title="ThunderHawk">ThunderHawk</a></li> <li><a href="/wiki/Vision_Mobile_Browser" title="Vision Mobile Browser">Vision</a></li> <li><a href="/wiki/WinWAP" title="WinWAP">WinWAP</a></li> <li><a href="/wiki/WorldWideWeb" title="WorldWideWeb">WorldWideWeb</a></li></ul> </div></td></tr></tbody></table><div></div></td></tr></tbody></table><div></div></td></tr><tr><td class="navbox-abovebelow" colspan="2"><div> <ul><li><a href="/wiki/Category:Web_browsers" title="Category:Web browsers">Category</a></li> <li><a href="/wiki/Comparison_of_web_browsers" title="Comparison of web browsers">Comparisons</a></li> <li><a href="/wiki/List_of_web_browsers" title="List of web browsers">List</a></li></ul> </div></td></tr></tbody></table></div> <div class="navbox-styles"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1129693374"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1236075235"></div><div role="navigation" class="navbox" aria-labelledby="Malware_topics109" style="padding:3px"><table class="nowraplinks mw-collapsible autocollapse navbox-inner" style="border-spacing:0;background:transparent;color:inherit"><tbody><tr><th scope="col" class="navbox-title" colspan="2"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1129693374"><link rel="mw-deduplicated-inline-style" href="mw-data:TemplateStyles:r1239400231"><div class="navbar plainlinks hlist navbar-mini"><ul><li class="nv-view"><a href="/wiki/Template:Malware" title="Template:Malware"><abbr title="View this template">v</abbr></a></li><li class="nv-talk"><a href="/wiki/Template_talk:Malware" title="Template talk:Malware"><abbr title="Discuss this template">t</abbr></a></li><li class="nv-edit"><a href="/wiki/Special:EditPage/Template:Malware" title="Special:EditPage/Template:Malware"><abbr title="Edit this template">e</abbr></a></li></ul></div><div id="Malware_topics109" style="font-size:114%;margin:0 4em"><a href="/wiki/Malware" title="Malware">Malware</a> topics</div></th></tr><tr><th scope="row" class="navbox-group" style="width:1%">Infectious malware</th><td class="navbox-list-with-group navbox-list navbox-odd hlist" style="width:100%;padding:0"><div style="padding:0 0.25em"> <ul><li><a href="/wiki/Comparison_of_computer_viruses" title="Comparison of computer viruses">Comparison of computer viruses</a></li> <li><a href="/wiki/Computer_virus" title="Computer virus">Computer virus</a></li> <li><a href="/wiki/Computer_worm" title="Computer worm">Computer worm</a></li> <li><a href="/wiki/List_of_computer_worms" title="List of computer worms">List of computer worms</a></li> <li><a href="/wiki/Timeline_of_computer_viruses_and_worms" title="Timeline of computer viruses and worms">Timeline of computer viruses and worms</a></li></ul> </div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Concealment</th><td class="navbox-list-with-group navbox-list navbox-even hlist" style="width:100%;padding:0"><div style="padding:0 0.25em"> <ul><li><a href="/wiki/Backdoor_(computing)" title="Backdoor (computing)">Backdoor</a></li> <li><a href="/wiki/Clickjacking" title="Clickjacking">Clickjacking</a></li> <li><a href="/wiki/Man-in-the-browser" title="Man-in-the-browser">Man-in-the-browser</a></li> <li><a href="/wiki/Man-in-the-middle_attack" title="Man-in-the-middle attack">Man-in-the-middle</a></li> <li><a href="/wiki/Rootkit" title="Rootkit">Rootkit</a></li> <li><a href="/wiki/Trojan_horse_(computing)" title="Trojan horse (computing)">Trojan horse</a></li> <li><a href="/wiki/Zombie_(computing)" title="Zombie (computing)">Zombie computer</a></li></ul> </div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Malware for profit</th><td class="navbox-list-with-group navbox-list navbox-odd hlist" style="width:100%;padding:0"><div style="padding:0 0.25em"> <ul><li><a href="/wiki/Adware" title="Adware">Adware</a></li> <li><a href="/wiki/Botnet" title="Botnet">Botnet</a></li> <li><a href="/wiki/Crimeware" title="Crimeware">Crimeware</a></li> <li><a href="/wiki/Fleeceware" title="Fleeceware">Fleeceware</a></li> <li><a href="/wiki/Form_grabbing" title="Form grabbing">Form grabbing</a></li> <li><a href="/wiki/Dialer#Fraudulent_dialer" title="Dialer">Fraudulent dialer</a></li> <li><a href="/wiki/Infostealer" title="Infostealer">Infostealer</a></li> <li><a href="/wiki/Keystroke_logging" title="Keystroke logging">Keystroke logging</a></li> <li><a href="/wiki/Internet_bot#Malicious_purposes" title="Internet bot">Malbot</a></li> <li><a href="/wiki/Privacy-invasive_software" title="Privacy-invasive software">Privacy-invasive software</a></li> <li><a href="/wiki/Ransomware" title="Ransomware">Ransomware</a></li> <li><a href="/wiki/Rogue_security_software" title="Rogue security software">Rogue security software</a></li> <li><a href="/wiki/Scareware" title="Scareware">Scareware</a></li> <li><a href="/wiki/Spyware" title="Spyware">Spyware</a></li> <li><a href="/wiki/Web_threat" title="Web threat">Web threats</a></li></ul> </div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">By operating system</th><td class="navbox-list-with-group navbox-list navbox-even hlist" style="width:100%;padding:0"><div style="padding:0 0.25em"> <ul><li><a href="/wiki/Category:Android_(operating_system)_malware" title="Category:Android (operating system) malware">Android malware</a></li> <li><a href="/wiki/Category:Classic_Mac_OS_viruses" title="Category:Classic Mac OS viruses">Classic Mac OS viruses</a></li> <li><a href="/wiki/Category:IOS_malware" title="Category:IOS malware">iOS malware</a></li> <li><a href="/wiki/Linux_malware" title="Linux malware">Linux malware</a></li> <li><a href="/wiki/Category:MacOS_malware" title="Category:MacOS malware">MacOS malware</a></li> <li><a href="/wiki/Macro_virus" title="Macro virus">Macro virus</a></li> <li><a href="/wiki/Mobile_malware" title="Mobile malware">Mobile malware</a></li> <li><a href="/wiki/Palm_OS_viruses" title="Palm OS viruses">Palm OS viruses</a></li> <li><a href="/wiki/HyperCard_viruses" class="mw-redirect" title="HyperCard viruses">HyperCard viruses</a></li></ul> </div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Protection</th><td class="navbox-list-with-group navbox-list navbox-odd hlist" style="width:100%;padding:0"><div style="padding:0 0.25em"> <ul><li><a href="/wiki/Anti-keylogger" title="Anti-keylogger">Anti-keylogger</a></li> <li><a href="/wiki/Antivirus_software" title="Antivirus software">Antivirus software</a></li> <li><a class="mw-selflink selflink">Browser security</a></li> <li><a href="/wiki/Data_loss_prevention_software" title="Data loss prevention software">Data loss prevention software</a></li> <li><a href="/wiki/Defensive_computing" title="Defensive computing">Defensive computing</a></li> <li><a href="/wiki/Firewall_(computing)" title="Firewall (computing)">Firewall</a></li> <li><a href="/wiki/Internet_security" title="Internet security">Internet security</a></li> <li><a href="/wiki/Intrusion_detection_system" title="Intrusion detection system">Intrusion detection system</a></li> <li><a href="/wiki/Mobile_security" title="Mobile security">Mobile security</a></li> <li><a href="/wiki/Network_security" title="Network security">Network security</a></li></ul> </div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Countermeasures</th><td class="navbox-list-with-group navbox-list navbox-even hlist" style="width:100%;padding:0"><div style="padding:0 0.25em"> <ul><li><a href="/wiki/Computer_and_network_surveillance" title="Computer and network surveillance">Computer and network surveillance</a></li> <li><a href="/wiki/Honeypot_(computing)" title="Honeypot (computing)">Honeypot</a></li> <li><a href="/wiki/Operation:_Bot_Roast" title="Operation: Bot Roast">Operation: Bot Roast</a></li></ul> </div></td></tr></tbody></table></div> <!-- NewPP limit report Parsed by mw‐api‐int.codfw.main‐5b65fffc7d‐2cw7j Cached time: 20250214162500 Cache expiry: 2592000 Reduced expiry: false Complications: [vary‐revision‐sha1, show‐toc] CPU time usage: 0.794 seconds Real time usage: 0.896 seconds Preprocessor visited node count: 3082/1000000 Post‐expand include size: 151223/2097152 bytes Template argument size: 1716/2097152 bytes Highest expansion depth: 17/100 Expensive parser function count: 4/500 Unstrip recursion depth: 1/20 Unstrip post‐expand size: 187784/5000000 bytes Lua time usage: 0.516/10.000 seconds Lua memory usage: 5820136/52428800 bytes Number of Wikibase entities loaded: 0/400 --> <!-- Transclusion expansion time report (%,ms,calls,template) 100.00% 780.815 1 -total 58.28% 455.060 1 Template:Reflist 28.25% 220.552 39 Template:Cite_web 15.48% 120.899 1 Template:Web_browsers 15.15% 118.257 1 Template:Navbox_with_collapsible_groups 12.88% 100.555 1 Template:Short_description 11.35% 88.641 1 Template:Cite_thesis 8.28% 64.688 2 Template:Pagetype 4.14% 32.312 1 Template:Dead_link 3.83% 29.944 3 Template:Cite_book --> <!-- Saved in parser cache with key enwiki:pcache:34973773:|#|:idhash:canonical and timestamp 20250214162500 and revision id 1274929835. Rendering was triggered because: api-parse --> </div><!--esi <esi:include src="/esitest-fa8a495983347898/content" /> --><noscript><img src="https://login.wikimedia.org/wiki/Special:CentralAutoLogin/start?useformat=desktop&amp;type=1x1&amp;usesul3=0" alt="" width="1" height="1" style="border: none; position: absolute;"></noscript> <div class="printfooter" data-nosnippet="">Retrieved from "<a dir="ltr" href="https://en.wikipedia.org/w/index.php?title=Browser_security&amp;oldid=1274929835">https://en.wikipedia.org/w/index.php?title=Browser_security&amp;oldid=1274929835</a>"</div></div> <div id="catlinks" class="catlinks" data-mw="interface"><div id="mw-normal-catlinks" class="mw-normal-catlinks"><a href="/wiki/Help:Category" title="Help:Category">Categories</a>: <ul><li><a href="/wiki/Category:Web_browsers" title="Category:Web browsers">Web browsers</a></li><li><a href="/wiki/Category:Web_security_exploits" title="Category:Web security exploits">Web security exploits</a></li><li><a href="/wiki/Category:Internet_security" title="Category:Internet security">Internet security</a></li></ul></div><div id="mw-hidden-catlinks" class="mw-hidden-catlinks mw-hidden-cats-hidden">Hidden categories: <ul><li><a href="/wiki/Category:All_articles_with_dead_external_links" title="Category:All articles with dead external links">All articles with dead external links</a></li><li><a href="/wiki/Category:Articles_with_dead_external_links_from_June_2019" title="Category:Articles with dead external links from June 2019">Articles with dead external links from June 2019</a></li><li><a href="/wiki/Category:Articles_with_permanently_dead_external_links" title="Category:Articles with permanently dead external links">Articles with permanently dead external links</a></li><li><a href="/wiki/Category:Articles_with_short_description" title="Category:Articles with short description">Articles with short description</a></li><li><a href="/wiki/Category:Short_description_matches_Wikidata" title="Category:Short description matches Wikidata">Short description matches Wikidata</a></li><li><a href="/wiki/Category:Use_dmy_dates_from_August_2024" title="Category:Use dmy dates from August 2024">Use dmy dates from August 2024</a></li></ul></div></div> </div> </main> </div> <div class="mw-footer-container"> <footer id="footer" class="mw-footer" > <ul id="footer-info"> <li id="footer-info-lastmod"> This page was last edited on 10 February 2025, at 02:08<span class="anonymous-show">&#160;(UTC)</span>.</li> <li id="footer-info-copyright">Text is available under the <a href="/wiki/Wikipedia:Text_of_the_Creative_Commons_Attribution-ShareAlike_4.0_International_License" title="Wikipedia:Text of the Creative Commons Attribution-ShareAlike 4.0 International License">Creative Commons Attribution-ShareAlike 4.0 License</a>; additional terms may apply. By using this site, you agree to the <a href="https://foundation.wikimedia.org/wiki/Special:MyLanguage/Policy:Terms_of_Use" class="extiw" title="foundation:Special:MyLanguage/Policy:Terms of Use">Terms of Use</a> and <a href="https://foundation.wikimedia.org/wiki/Special:MyLanguage/Policy:Privacy_policy" class="extiw" title="foundation:Special:MyLanguage/Policy:Privacy policy">Privacy Policy</a>. Wikipedia® is a registered trademark of the <a rel="nofollow" class="external text" href="https://wikimediafoundation.org/">Wikimedia Foundation, Inc.</a>, a non-profit organization.</li> </ul> <ul id="footer-places"> <li id="footer-places-privacy"><a href="https://foundation.wikimedia.org/wiki/Special:MyLanguage/Policy:Privacy_policy">Privacy policy</a></li> <li id="footer-places-about"><a href="/wiki/Wikipedia:About">About Wikipedia</a></li> <li id="footer-places-disclaimers"><a href="/wiki/Wikipedia:General_disclaimer">Disclaimers</a></li> <li id="footer-places-contact"><a href="//en.wikipedia.org/wiki/Wikipedia:Contact_us">Contact Wikipedia</a></li> <li id="footer-places-wm-codeofconduct"><a href="https://foundation.wikimedia.org/wiki/Special:MyLanguage/Policy:Universal_Code_of_Conduct">Code of Conduct</a></li> <li id="footer-places-developers"><a href="https://developer.wikimedia.org">Developers</a></li> <li id="footer-places-statslink"><a href="https://stats.wikimedia.org/#/en.wikipedia.org">Statistics</a></li> <li id="footer-places-cookiestatement"><a href="https://foundation.wikimedia.org/wiki/Special:MyLanguage/Policy:Cookie_statement">Cookie statement</a></li> <li id="footer-places-mobileview"><a href="//en.m.wikipedia.org/w/index.php?title=Browser_security&amp;mobileaction=toggle_view_mobile" class="noprint stopMobileRedirectToggle">Mobile view</a></li> </ul> <ul id="footer-icons" class="noprint"> <li id="footer-copyrightico"><a href="https://wikimediafoundation.org/" class="cdx-button cdx-button--fake-button cdx-button--size-large cdx-button--fake-button--enabled"><img src="/static/images/footer/wikimedia-button.svg" width="84" height="29" alt="Wikimedia Foundation" lang="en" loading="lazy"></a></li> <li id="footer-poweredbyico"><a href="https://www.mediawiki.org/" class="cdx-button cdx-button--fake-button cdx-button--size-large cdx-button--fake-button--enabled"><picture><source media="(min-width: 500px)" srcset="/w/resources/assets/poweredby_mediawiki.svg" width="88" height="31"><img src="/w/resources/assets/mediawiki_compact.svg" alt="Powered by MediaWiki" width="25" height="25" loading="lazy"></picture></a></li> </ul> </footer> </div> </div> </div> <div class="vector-header-container vector-sticky-header-container"> <div id="vector-sticky-header" class="vector-sticky-header"> <div class="vector-sticky-header-start"> <div class="vector-sticky-header-icon-start vector-button-flush-left vector-button-flush-right" aria-hidden="true"> <button class="cdx-button cdx-button--weight-quiet cdx-button--icon-only vector-sticky-header-search-toggle" tabindex="-1" data-event-name="ui.vector-sticky-search-form.icon"><span class="vector-icon mw-ui-icon-search mw-ui-icon-wikimedia-search"></span> <span>Search</span> </button> </div> <div role="search" class="vector-search-box-vue vector-search-box-show-thumbnail vector-search-box"> <div class="vector-typeahead-search-container"> <div class="cdx-typeahead-search cdx-typeahead-search--show-thumbnail"> <form action="/w/index.php" id="vector-sticky-search-form" class="cdx-search-input cdx-search-input--has-end-button"> <div class="cdx-search-input__input-wrapper" data-search-loc="header-moved"> <div class="cdx-text-input cdx-text-input--has-start-icon"> <input class="cdx-text-input__input" type="search" name="search" placeholder="Search Wikipedia"> <span class="cdx-text-input__icon cdx-text-input__start-icon"></span> </div> <input type="hidden" name="title" value="Special:Search"> </div> <button class="cdx-button cdx-search-input__end-button">Search</button> </form> </div> </div> </div> <div class="vector-sticky-header-context-bar"> <nav aria-label="Contents" class="vector-toc-landmark"> <div id="vector-sticky-header-toc" class="vector-dropdown mw-portlet mw-portlet-sticky-header-toc vector-sticky-header-toc vector-button-flush-left" > <input type="checkbox" id="vector-sticky-header-toc-checkbox" role="button" aria-haspopup="true" data-event-name="ui.dropdown-vector-sticky-header-toc" class="vector-dropdown-checkbox " aria-label="Toggle the table of contents" > <label id="vector-sticky-header-toc-label" for="vector-sticky-header-toc-checkbox" class="vector-dropdown-label cdx-button cdx-button--fake-button cdx-button--fake-button--enabled cdx-button--weight-quiet cdx-button--icon-only " aria-hidden="true" ><span class="vector-icon mw-ui-icon-listBullet mw-ui-icon-wikimedia-listBullet"></span> <span class="vector-dropdown-label-text">Toggle the table of contents</span> </label> <div class="vector-dropdown-content"> <div id="vector-sticky-header-toc-unpinned-container" class="vector-unpinned-container"> </div> </div> </div> </nav> <div class="vector-sticky-header-context-bar-primary" aria-hidden="true" ><span class="mw-page-title-main">Browser security</span></div> </div> </div> <div class="vector-sticky-header-end" aria-hidden="true"> <div class="vector-sticky-header-icons"> <a href="#" class="cdx-button cdx-button--fake-button cdx-button--fake-button--enabled cdx-button--weight-quiet cdx-button--icon-only" id="ca-talk-sticky-header" tabindex="-1" data-event-name="talk-sticky-header"><span class="vector-icon mw-ui-icon-speechBubbles mw-ui-icon-wikimedia-speechBubbles"></span> <span></span> </a> <a href="#" class="cdx-button cdx-button--fake-button cdx-button--fake-button--enabled cdx-button--weight-quiet cdx-button--icon-only" id="ca-subject-sticky-header" tabindex="-1" data-event-name="subject-sticky-header"><span class="vector-icon mw-ui-icon-article mw-ui-icon-wikimedia-article"></span> <span></span> </a> <a href="#" class="cdx-button cdx-button--fake-button cdx-button--fake-button--enabled cdx-button--weight-quiet cdx-button--icon-only" id="ca-history-sticky-header" tabindex="-1" data-event-name="history-sticky-header"><span class="vector-icon mw-ui-icon-wikimedia-history mw-ui-icon-wikimedia-wikimedia-history"></span> <span></span> </a> <a href="#" class="cdx-button cdx-button--fake-button cdx-button--fake-button--enabled cdx-button--weight-quiet cdx-button--icon-only mw-watchlink" id="ca-watchstar-sticky-header" tabindex="-1" data-event-name="watch-sticky-header"><span class="vector-icon mw-ui-icon-wikimedia-star mw-ui-icon-wikimedia-wikimedia-star"></span> <span></span> </a> <a href="#" class="cdx-button cdx-button--fake-button cdx-button--fake-button--enabled cdx-button--weight-quiet cdx-button--icon-only" id="ca-edit-sticky-header" tabindex="-1" data-event-name="wikitext-edit-sticky-header"><span class="vector-icon mw-ui-icon-wikimedia-wikiText mw-ui-icon-wikimedia-wikimedia-wikiText"></span> <span></span> </a> <a href="#" class="cdx-button cdx-button--fake-button cdx-button--fake-button--enabled cdx-button--weight-quiet cdx-button--icon-only" id="ca-ve-edit-sticky-header" tabindex="-1" data-event-name="ve-edit-sticky-header"><span class="vector-icon mw-ui-icon-wikimedia-edit mw-ui-icon-wikimedia-wikimedia-edit"></span> <span></span> </a> <a href="#" class="cdx-button cdx-button--fake-button cdx-button--fake-button--enabled cdx-button--weight-quiet cdx-button--icon-only" id="ca-viewsource-sticky-header" tabindex="-1" data-event-name="ve-edit-protected-sticky-header"><span class="vector-icon mw-ui-icon-wikimedia-editLock mw-ui-icon-wikimedia-wikimedia-editLock"></span> <span></span> </a> </div> <div class="vector-sticky-header-buttons"> <button class="cdx-button cdx-button--weight-quiet mw-interlanguage-selector" id="p-lang-btn-sticky-header" tabindex="-1" data-event-name="ui.dropdown-p-lang-btn-sticky-header"><span class="vector-icon mw-ui-icon-wikimedia-language mw-ui-icon-wikimedia-wikimedia-language"></span> <span>10 languages</span> </button> <a href="#" class="cdx-button cdx-button--fake-button cdx-button--fake-button--enabled cdx-button--weight-quiet cdx-button--action-progressive" id="ca-addsection-sticky-header" tabindex="-1" data-event-name="addsection-sticky-header"><span class="vector-icon mw-ui-icon-speechBubbleAdd-progressive mw-ui-icon-wikimedia-speechBubbleAdd-progressive"></span> <span>Add topic</span> </a> </div> <div class="vector-sticky-header-icon-end"> <div class="vector-user-links"> </div> </div> </div> </div> </div> <div class="vector-settings" id="p-dock-bottom"> <ul></ul> </div><script>(RLQ=window.RLQ||[]).push(function(){mw.config.set({"wgHostname":"mw-web.codfw.main-b766959bd-r6rc4","wgBackendResponseTime":139,"wgPageParseReport":{"limitreport":{"cputime":"0.794","walltime":"0.896","ppvisitednodes":{"value":3082,"limit":1000000},"postexpandincludesize":{"value":151223,"limit":2097152},"templateargumentsize":{"value":1716,"limit":2097152},"expansiondepth":{"value":17,"limit":100},"expensivefunctioncount":{"value":4,"limit":500},"unstrip-depth":{"value":1,"limit":20},"unstrip-size":{"value":187784,"limit":5000000},"entityaccesscount":{"value":0,"limit":400},"timingprofile":["100.00% 780.815 1 -total"," 58.28% 455.060 1 Template:Reflist"," 28.25% 220.552 39 Template:Cite_web"," 15.48% 120.899 1 Template:Web_browsers"," 15.15% 118.257 1 Template:Navbox_with_collapsible_groups"," 12.88% 100.555 1 Template:Short_description"," 11.35% 88.641 1 Template:Cite_thesis"," 8.28% 64.688 2 Template:Pagetype"," 4.14% 32.312 1 Template:Dead_link"," 3.83% 29.944 3 Template:Cite_book"]},"scribunto":{"limitreport-timeusage":{"value":"0.516","limit":"10.000"},"limitreport-memusage":{"value":5820136,"limit":52428800}},"cachereport":{"origin":"mw-api-int.codfw.main-5b65fffc7d-2cw7j","timestamp":"20250214162500","ttl":2592000,"transientcontent":false}}});});</script> <script type="application/ld+json">{"@context":"https:\/\/schema.org","@type":"Article","name":"Browser security","url":"https:\/\/en.wikipedia.org\/wiki\/Browser_security","sameAs":"http:\/\/www.wikidata.org\/entity\/Q4976859","mainEntity":"http:\/\/www.wikidata.org\/entity\/Q4976859","author":{"@type":"Organization","name":"Contributors to Wikimedia projects"},"publisher":{"@type":"Organization","name":"Wikimedia Foundation, Inc.","logo":{"@type":"ImageObject","url":"https:\/\/www.wikimedia.org\/static\/images\/wmf-hor-googpub.png"}},"datePublished":"2012-03-05T13:20:27Z","dateModified":"2025-02-10T02:08:06Z","headline":"application of internet security to web browsers"}</script> </body> </html>

Pages: 1 2 3 4 5 6 7 8 9 10