Security implications of Firefox 2.0 session restore feature

The restore session feature of Firefox is very nice to have.  Firefox 2.0 will attempt to restore a session connection if the browser dies.  However this has security implications especially for banking or any service with a login.  See below for Mozilla Foundation notes:

The Session Restore functionality provided in Firefox 2 will restore connections to services which use session cookies to maintain login state such as GMail. It is recommended that users with concerns about the privacy implications of this behavior change the value of browser.sessionstore.resume_from_crash to false.

Songbird

A group of developers calling themselves Pioneers of the Inevitable has launched an early beta of a multiplatform web based music player and browser called Songbird. Some members of the groups had worked previously on Winamp and the Yahoo! Music Engine. The current release is version 0.2 and is available for OS-X, Linux and Windows XP. I downloaded the current release onto my MacBook and when launched Songbird offered to import my iTunes library which it did quite successfully. It also included a number of extensions for Shoutcast and WikiPedia ( a strange one ). The code appears to be based on the Mozilla/Gecko engine and the group pays homage to the Mozilla Foundation. The user interface seems out of place on the Mac with its darkened theme and black windows but is otherwise very "pretty".Song Bird

Continue reading "Songbird"