Symantec: Browser Bugs on the Rise

SANTA MONICA, Calif. — Symantec has released its biannual Internet Security Threat Report, which assesses risk for leading browsers. The report found that only Opera saw its total number of bugs decrease, compared to Mozilla’s Firefox browser, which lead the field with 47 security bugs found by Symantec’s engineering team.

Vincent Weafer, who directed the study for Symantec, said there is no such thing as a safe browser, pointing out that nearly ever product on the market saw an increase in security bugs.

“If you've got a browser, make sure you're configuring it correctly,” Weafer said. “That's a far better strategy than running some browser just because you haven't heard of it.”

According to the study, Firefox’s total number of bugs increased almost threefold from six-months ago, increasing from 17 to 47 bugs. Microsoft’s Internet Explorer had 38, and Apple’s Safari saw its numbers double to 12 bugs. Opera’s bugs dropped from nine to seven over the study period.

The report also found that while Explorer remains the most popular browser for hackers to attack, 31 percent of all browser attacks targeted more than one browser. Foxfire was the target of 20 percent of all hacker attacks.

Weafer attributed part of the increase in the total number of bugs found to the fact that more people are looking for them.

“People are encouraged and getting money for finding vulnerabilities, so now you have more people looking,” said Weafer, explaining that firms such as 3Com and VeriSign have begun offering rewards for finding bugs.

There is also a growing black market for the information, Weafer said.

According to Marc Maiffret of eEye Digital Security, the growing black market in browser bugs represents the softpoint of attack for many hackers.

"Everyone has realized that targeting the applications on the desktop is a better way to break in and steal things than server flaws," Maiffret said.

The Symantec study found that 86 percent of all attacks target home users, mostly in the U.S., where 37 percent of all attacks originate.

While the study saddled Firefox with the unsavory title of having the most bugs, it did offer Mozilla praise, saying that it was the fastest to respond to security flaws, with an average patch time of one day. Opera came in second, averaging two days. Safari followed, with a five-day turnaround window. Microsoft came in last, averaging nine days per patch.

Copyright © 2026 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

Brazil Invites Public Input on AV Guidelines

Brazil’s National Data Protection Authority (ANPD) on Friday launched a public consultation on developing guidelines for age verification mechanisms under the country’s Digital Statute for Children and Adolescents (Digital ECA), which requires adult websites to age-verify users located in Brazil.

Paysite Confidential: Inside the Creator Economy's Shift Toward Ownership

For years, the adult industry’s creator economy has been defined by platforms — powerful engines of discovery, monetization and scale that reshaped how performers connect with their audiences.

Senator Urges DOJ to Crack Down on 'Obscenity,' Attacks OnlyFans

U.S. Senator Jim Banks of Indiana this week urged Acting Attorney General Todd Blanche to reestablish the Department of Justice’s defunct Obscenity Prosecution Task Force in a letter that targets OnlyFans while repeatedly conflating “obscenity” with legal adult content.

UN Experts Urge US, Canada to Prosecute Aylo, Others for 'Exploitation'

GENEVA – The United Nations Office of the High Commissioner for Human Rights (OHCHR) has issued a press release in which two U.N. special rapporteurs, cited as experts, accuse Aylo and other companies of complicity in sexual exploitation.

Kickstarter Revokes New Rules Banning Fundraising for Adult Content, Products

Crowdfunding platform Kickstarter announced Tuesday that it has reversed its recent decision to impose new “Mature Content” rules banning projects that involve adult content and sextech.

Report: Irish Justice Minister Seeks UK-Style Ban on 'Extreme' Content

Ireland’s justice minister plans to introduce legislation criminalizing possession and distribution of “extreme” pornography, according to a report by the Irish Independent.

New Kickstarter Rules Ban Fundraising for Adult Content, Products

Crowdfunding platform Kickstarter has posted new “Mature Content” rules banning projects that involve adult content and sextech.

WebGroup Czech Republic Settles Florida AV Suit, Will Pay $1.2 Million

WebGroup Czech Republic (WGCZ), the parent company of XVideos, XNXX, BangBros and GirlsGoneWild, has settled a lawsuit filed by the state of Florida over those sites’ alleged failure to age-verify Florida users before allowing access to adult content.

AEBN Publishes Popular Searches for March, April

AEBN has published the top search terms for March and April from its straight and gay theaters in all 50 states and the District of Columbia.

Ofcom Investigates Two Sites Over Possible AV Violations

U.K. media regulator Ofcom on Wednesday launched investigations into two adult sites as part of its age assurance enforcement program under the Online Safety Act (OSA).

Show More