I just came across this Reddit post regarding Firefox’s sandbox, and how it now allegedly matches Chrome. I tried to confirm this from other sources, but couldn’t find anything, so I’m curious what you think of this.
If FF is officially claiming this, I don’t have a reason to question it but of course, independent testing on the same would be great to see.
I’m hoping for https://privacytests.org/ to confirm this sooner than later.
This explains it more:
Reading the comments on the thread is helping.
@sha123 Thoughts?
It seems to be Windows only, isn’t it?
If so doesn’t seem to be super important, since windows so shitty in case of security… Better move to Mac or Linux.
There seems to have been a change in wind at Mozilla, considering this and the Fission work that has been done on Android.
It’s great that FF is doing some progress in the security space on Windows. I haven’t really looked into it in detail, since the post is about FF on Windows, and I am more interested in security on Linux & Android.
While it certainly is good to see progress, I doubt that it is on the same level as Chromium, for other reasons than the ones mentioned in the Reddit post. For example some unfixed site isolation leaks. The Reddit post just shows a really high level overview and the devil is in the details. And of course there are plenty of other security considerations outside of sandboxing, like exploit mitigations.
It likely won’t. There is a reason why it is called privacytests, not securitytests.
