Closed
Bug 1434893
Opened 8 years ago
Closed 8 years ago
Blocklist "Image Previewer"
Categories
(Toolkit :: Blocklist Policy Requests, enhancement)
Toolkit
Blocklist Policy Requests
Tracking
()
RESOLVED
FIXED
People
(Reporter: Fallen, Unassigned)
Details
This add-on silently opens an iframe that starts a coin miner, it has similarities to the FF Tool add-ons.
guid: {ed352072-ddf0-4cb4-9cb6-d8aa3741c2de}
url: https://reviewers.addons.mozilla.org/en-US/reviewers/review-unlisted/830d1418dcd14a0a9529
The add-on opens the iframe with https://devappgrant.space/lib/iframe.html?u=6084&t=0.5 which seems to be used by other blocked add-ons as well (with other u parameters).
We should consider checking other add-ons for this URL as well.
| Reporter | ||
Comment 1•8 years ago
|
||
Comment 2•8 years ago
|
||
We don't allow coin miners, but just including them wouldn't be enough to justify blocklisting in my opinion. Is there something else the add-on is doing that would be considered blocklist-worthy? Otherwise I think the developer should be notified and given some time to fix it.
| Reporter | ||
Comment 3•8 years ago
|
||
The add-on also executes a remote script on google.com
| Reporter | ||
Comment 5•8 years ago
|
||
Done
Status: NEW → RESOLVED
Closed: 8 years ago
Flags: needinfo?(philipp)
Resolution: --- → FIXED
You need to log in
before you can comment on or make changes to this bug.
Description
•