Hacker News new | past | comments | ask | show | jobs | submit login

> Firefox is already not one of the most hardened browser engines

Citations and sources for this claim?





This chart does not support the referred claim at all. Payouts are not only linked to the browser's hardening, but also to the amount of affected users. Given Firefox's engine low market share, it's not very surprising that payouts for its vulnerabilities is lower than for Chrome.


Firefox, Safari and Edge being in the same price bracket and less than Google Chrome is not related to their relative security, but their marketshare being a lot less.


Isn't this taking demand into account? Exploits for Chrome are worth more because more people want them.


That's not a reliable source or claim to support the argument claimed here. That's more aligned with market demand, and whatever that company wants to pay out.


tar RCE, linux & macos LPE valued less than adobe pdf/cpanel? Interesting.

If you look at number of CVEs[1] Chrome is above Firefox, but I admit that especially given the market share that doesn't say much. I wish they had some score weighted rank.

1. https://www.cvedetails.com/top-50-products.php?year=2022


using just this image it would imply chrome was the least secure browser, but I'm not sure I can really infer much at all from this image other than bugs have been found in all browsers.

Was this intended on showing firefox is the least hardened browser somehow?




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: