logoalt Hacker News

TurboSkylineyesterday at 10:32 AM2 repliesview on HN

I'm not familiar with Zen, but how do you reconcile that Waterfox frequently lags behind upstream Firefox in terms of security fixes? Yes, you get a perceived gain in privacy, but is that worth potentially exposing yourself to additional vulnerabilities?


Replies

MrAlex94yesterday at 10:40 AM

> lags behind upstream Firefox in terms of security fixes

I’m not sure why this has become a thing - usually I either release Waterfox the week before ESR releases (the week the code freeze happens and new version gets tagged) or, if I’m actively working on features and they need to coincide with the next update I push, I will release on the same Tuesday the ESR releases.

You can check the GitHub tag history for Waterfox to see it’s been that way for a good while :)

einryesterday at 12:15 PM

Yes, you get a perceived gain in privacy, but is that worth potentially exposing yourself to additional vulnerabilities?

Speaking only for myself, and regardless of whether this is actually true (see sibling comment): yes. Absolutely. A non-privacy focused browser like Firefox has vulnerabilities/data leaks by design that are worse than hypothetical ones that I probably will not be subject to browsing my usual benign set of websites.

(Posted from Waterfox)