Jump to content

Firefox - Site Isolation

WereCat

Source:

https://blog.mozilla.org/security/2021/05/18/introducing-site-isolation-in-firefox/

 

 



 

When two major vulnerabilities known as Meltdown and Spectre were disclosed by security researchers in early 2018, Firefox promptly added security mitigations to keep you safe.

 

This fundamental redesign of Firefox’s Security architecture extends current security mechanisms by creating operating system process-level boundaries for all sites loaded in Firefox for Desktop. Isolating each site into a separate operating system process makes it even harder for malicious sites to read another site’s secret or private data.

 

 

This seems to be a great step forward in a webrowser security. 

I honestly don't know how exactly it will work, to me it reminds me to be some kind of sandboxing feature where for example a java script from one tab now won't be able to get your browsing information from another tab. 

But as I said, I'm not sure if it will work exactly this way. 

 

Anyways, I wonder if it will have a big impact on RAM usage or performance in general. 

Link to comment
Share on other sites

Link to post
Share on other sites

So how is this different from Google Chrome’s sandboxing? A feature that existed since 2008
 

Spoiler

50EB8510-67D4-4D3A-B6E4-A252C5FCE5BF.jpeg.24a0a7975f8a8511b65d00c8dfc88169.jpeg2EAAD15A-6A29-4DF1-926A-51A552E5F152.jpeg.c63609615a33476926e6aaa69a5a3d97.jpegE45510FE-04AA-496D-8374-E93F99190424.jpeg.3def643c9731d684e1b0d1b89f1f8394.jpegF66C9D30-559A-4574-884A-2F3AC72F50D3.jpeg.4a59a068b360f0af319e2891aa0932a8.jpeg

 

There is more that meets the eye
I see the soul that is inside

 

 

Link to comment
Share on other sites

Link to post
Share on other sites

19 minutes ago, captain_to_fire said:

So how is this different from Google Chrome’s sandboxing? A feature that existed since 2008?

Given that Firefox has also had sandboxing for quite some time, there does appear to be a difference if they are making an announcement about it, i'm just not smart enough to understand what it is.

 

because of the wording they used, what i THINK they mean is that instead of having child processes

image.png.daa66349031188065b837b99965d78f7.png

 

each site/tab will be given it's own main/parent process

🌲🌲🌲

 

 

 

◒ ◒ 

Link to comment
Share on other sites

Link to post
Share on other sites

I distinctly remember years ago Mozilla said they wanted to avoid doing this because it was one of the primary reasons Chrome used so much memory

Link to comment
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×