Security news

Latest security news

8 of 1,256 storiesFirefoxClear all

Yesterday · Tue, 15 Sept 2026

  1. Mozilla security advisory (AV26-924)

    Serial Number: AV26-924 Date: September 15, 2026 As of September 15, 2026, Mozilla is affected by vulnerabilities in the following products: Firefox ESR Versions prior to 115.41 Versions prior to 140.16 Versions prior to 153.3 Firefox Versions prior to 156 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. Security Vulnerabilities fixed in Firefox 156 — Mozilla Security Vulnerabilities fixed in Firefox ESR 115.41 — Mozilla Security Vulnerabilities fixed in Firefox ESR 140.16 — Mozilla Security Vulnerabilities fixed in Firefox ESR 153.3 — Mozilla Mozilla Foundation Security Advisories — Mozilla

    Canadian Centre for Cyber SecurityFirefox

Mon, 14 Sept 2026

  1. Twitch extension with 30K installs exposes users’ OAuth tokens

    A browser extension called Twitch Enhanced Viewer | JeetBot, available in the official Chrome and Firefox stores, sends users' Twitch OAuth session tokens to a commercial bot service.

    BleepingComputerChrome, Firefox
  2. Malicious Twitch Browser Extension Leaks OAuth Tokens From Nearly 31,000 Users

    A malicious cross-store Twitch browser extension has leaked OAuth tokens associated with nearly 31,000 users to proxy servers operated by a Russian commercial bot service. The extension, named "Twitch Enhanced Viewer | JeetBot," lists HISHIMIRO/jeetbot.cc as its developer and has the following identifiers on the Google Chrome Web Store and Mozilla Firefox Add-Ons store - Chrome -

    The Hacker NewsGoogle, Chrome, Firefox

Tue, 1 Sept 2026

  1. Firefox helps iPhone users bypass ads on web sites while making money showing its own ads

    Baked-in Firefox ad blocking on iOS begins rolling out slowly today, and is off by default

    The RegisteriOS, Firefox
  2. Mozilla security advisory (AV26-868)

    Serial number: AV26-868 Date: September 1, 2026 As of September 1, 2026, Mozilla is affected by vulnerabilities in the following products: Firefox ESR Versions prior to 115.40 Versions prior to 140.15 Versions prior to 153.2 Firefox Versions prior to 155 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. Security Vulnerabilities fixed in Firefox ESR 115.40 — Mozilla Security Vulnerabilities fixed in Firefox ESR 140.15 — Mozilla Security Vulnerabilities fixed in Firefox ESR 153.2 — Mozilla Security Vulnerabilities fixed in Firefox 155 — Mozilla Mozilla Foundation Security Advisories — Mozilla

    Canadian Centre for Cyber SecurityFirefox

Mon, 24 Aug 2026

  1. Malicious Firefox add-ons caught stealing cryptowallet seed phrases and browser credentials

    Every time you add an extension or plugin to your browser, there's a risk that you might be doing more than managing your cryptocurrency wallet, generating passwords, taking notes, or tracking sports results. There's a chance that you have just handed a complete stranger access to your savings. Read more in my article on the Hot for Security blog.

    Graham CluleyFirefox

Wed, 29 Apr 2026

Tue, 21 Apr 2026

About this news

1,256
Stories
41
Added in the last 24 hours
19
Critical in the last 7 days
4
Reported by several outlets