Join the AMA (Ask Me Anything) with the Firefox leadership team to celebrate Firefox 20th anniversary and discuss Firefox’s future on Mozilla Connect. Mark your calendar on Thursday, November 14, 18:00 - 20:00 UTC!

Search Support

Avoid support scams. We will never ask you to call or text a phone number or share personal information. Please report suspicious activity using the “Report Abuse” option.

Learn More

Found an attack site. Thought of way to prevent successful attack. (Feature Suggestion)

  • 2 replies
  • 1 has this problem
  • 13 views
  • Last reply by FredMcD

more options

I went to the site at this link (DO NOT CLICK!!!): http:// 134.249.116.78 /index.php The URL Google said the link would lead to is this: www. javcolor .com/ytvvo4l/npeeo6is.php?dtjfygku=embed...

It tried to brute force open dialogs to get me to download something and kept popping up all sorts of crap. It prevented me from closing the tab by opening up endless dialogs. I finally was able to close the tab by pressing ESC rapidly.

So my suggestion is to allow closing the current tab even if a dialog has focus in the application. This would not allow a website to pop up save dialogs and other dialogs preventing you from closing the tab. Honestly with the current architecture of applications I am not sure this is possible if the dialog is modal.

So I guess is there any kind of emergency mechanism to prevent this kind of thing already? I have pop ups blocked in Firefox settings. I just have never seen a someone abuse the save file dialog like this.

Perhaps I need some third party plugin to protect myself from this. I used to run Noscript, but ran into issues with usability of websites. I also got weary of having to enable servers all the time.

I went to the site at this link (DO NOT CLICK!!!): http:// 134.249.116.78 /index.php The URL Google said the link would lead to is this: www. javcolor .com/ytvvo4l/npeeo6is.php?dtjfygku=embed... It tried to brute force open dialogs to get me to download something and kept popping up all sorts of crap. It prevented me from closing the tab by opening up endless dialogs. I finally was able to close the tab by pressing ESC rapidly. So my suggestion is to allow closing the current tab even if a dialog has focus in the application. This would not allow a website to pop up save dialogs and other dialogs preventing you from closing the tab. Honestly with the current architecture of applications I am not sure this is possible if the dialog is modal. So I guess is there any kind of emergency mechanism to prevent this kind of thing already? I have pop ups blocked in Firefox settings. I just have never seen a someone abuse the save file dialog like this. Perhaps I need some third party plugin to protect myself from this. I used to run Noscript, but ran into issues with usability of websites. I also got weary of having to enable servers all the time.

Modified by James

All Replies (2)

more options

The best one is don't go there. And why did you go to such sites? Best way to kill such pop is for PC Alt-Cntl-Delete and kill that task.

But future reference is why did you go to such sites to start if you didn't know what it was.

more options

Let's make sure your system is safe.

You may have ad/mal-ware. Further information can be found in this article; https://support.mozilla.org/en-US/kb/troubleshoot-firefox-issues-caused-malware?cache=no

Run most or all of the listed malware scanners. Each works differently. If one program misses something, another may pick it up.