Status

()

enhancement
RESOLVED FIXED
a year ago
a year ago

People

(Reporter: Fallen, Unassigned)

Tracking

Firefox Tracking Flags

(Not tracked)

Details

This add-on silently opens an iframe that starts a coin miner, it has similarities to the FF Tool add-ons.

guid: {ed352072-ddf0-4cb4-9cb6-d8aa3741c2de} 
url:  https://reviewers.addons.mozilla.org/en-US/reviewers/review-unlisted/830d1418dcd14a0a9529


The add-on opens the iframe with https://devappgrant.space/lib/iframe.html?u=6084&t=0.5 which seems to be used by other blocked add-ons as well (with other u parameters).

We should consider checking other add-ons for this URL as well.
We don't allow coin miners, but just including them wouldn't be enough to justify blocklisting in my opinion. Is there something else the add-on is doing that would be considered blocklist-worthy? Otherwise I think the developer should be notified and given some time to fix it.
The add-on also executes a remote script on google.com
Block is ready for review.
Flags: needinfo?(philipp)
Done
Status: NEW → RESOLVED
Last Resolved: a year ago
Flags: needinfo?(philipp)
Resolution: --- → FIXED
You need to log in before you can comment on or make changes to this bug.