Skip to content

More comprehensive security comparisons for browsers article #205

@Ganwtrs

Description

@Ganwtrs

Relevant resources:

Extra comparisons added could be:

  • Options to disable JIT, Edge can do it without needing to disable WASM and Safari needs Lockdown Mode
  • Code Integrity Guard (CIG) exclusive to Edge
  • Update cycle
  • Control Flow Integrity (CFI)
  • Strength of site isolation (Gecko and WebKit are weaker than Chromium)
  • X11 or Wayland by default on Linux
  • Memory allocation hardening
  • Untrusted font blocking
  • seccomp-bpf filtering?

I would also like to request that there be a warning against using Flatpak browsers, as they have way worse site isolation.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions