SlideShare a Scribd company logo
TEN STEPS TO OPTIMIZE MOZILLA FIREFOX
FOR GOOGLE APPS SECURITY
BACKUPIFY – APRIL 2012
10 STEPS TO OPTIMIZE MOZILLA FIREFOX FOR GOOGLE APPS SECURITY
Backupify, Inc. 2
INTRODUCTION
Firefox has long been considered one of, if not the, most reliable and adaptable
browser available today, but that standing is easily undermined by insecure
browser settings and user preferences. When running a Software-as-a-Service
solution like Google Apps, lax browser security can prove fatal to a Google Apps
domain, and to your business. Below are 10 steps you take to maximize Firefox's
defenses against online threats and keep your Google Apps domain safe and
secure.
BROWSER SETTINGS
Firefox's reputation as a highly customizable browser is well earned, so your
Google Apps security measures should begin with the Firefox's internal settings.
1. Disable Advanced JavaScript
For absolute maximum security, you should disable JavaScript altogether, as
hackers can use it to execute a number of unscrupulous actions in your browser.
However, JavaScript is necessary to operate the interactive features of many online
applications, including portions of the Google Apps suite. The good news is Firefox
can disable only the more dangerous elements of JavaScript. Under the Content
Panel's Advanced JavaScript Settings, deselect the options to Move Or Resize
Existing Windows, Raise Or Lower Windows, and Disable Or Replace Context
Menus. This will prevent websites from opening hidden browser windows you can't
easily dismiss or control.
2. Set Custom Browser History Configuration
Firefox offers a Private Browsing Mode that prevents it from recording any
passwords, form autofill data, accepting cookies, or saving other history data. This
is prudent, as it prevents hackers from targeting your browser to obtain this access
information. You can permanently opt into Private Browsing mode by selecting
the Never Remember History option in the Privacy Panel, but the smarter move is
to configure a Custom History Setting. Within the Privacy Panel's Custom Settings
10 STEPS TO OPTIMIZE MOZILLA FIREFOX FOR GOOGLE APPS SECURITY
Backupify, Inc. 3
For History section, deselect every option except Remember Download History.
This will ensure you have a record of any items downloaded — knowingly or
otherwise — but that any other history data (notably login information) won't be
saved in the browser.
3. Show the Downloads Window When Downloading Files
Some hyperlinks disguise malicious software downloads. Selecting the Show The
Downloads Window option in the General Options panel ensures that nothing gets
dropped on your hard drive without your knowledge.
4. Enable Security Warnings
Firefox provides a number of defenses and security warnings by default, but you
should be certain these options are enabled. Under the Security Panel, select
the Warn Me When Sites Try To Install Add-Ons, which will prevent any malware
disguised as video player plug-ins or game features from sneaking onto your
browser. Then select Block Reported Attack Sites and Block Reported Web
Forgeries, which are pretty self-explanatory.
5. Disable Password Storage
Storing passwords in your browser simply makes your passwords vulnerable to
browser attacks, putting your Google Apps account and domain at risk. While less
convenient, you should disable the password storage option.
6. Set Alerts for Offline Website Data Storage
Some websites will try to store data locally. Most of these requests are legitimate
— Google Apps can occasionally make them in relation to its Offline Mode — but
you should be aware when these requests are made. Under Firefox's Advanced
Panel's Network tab, select the Tell Me When A Website Asks To Store Data For
Offline Use option to ensure no offline data is saved without your knowledge and
permission.
10 STEPS TO OPTIMIZE MOZILLA FIREFOX FOR GOOGLE APPS SECURITY
Backupify, Inc. 4
7. Automatically Install Updates
Keeping Firefox up to date means you'll always have the latest security patches
and defenses running on your browser. Under the Advanced Panel's Update tab,
select the Automatically Install Updates option and the related Warn Me If This
Will Disable Any Of My Add-Ons option. The former will keep you running the
latest version of Firefox; the latter will let you know if any of your security plug-ins
are incompatible with the latest Firefox update.
8. Enable Encryption
While selecting the SSL version of any website is prudent, Firefox can enforce the
use of the latest and most effective Secure Sockets Layer and related encryption
protocols at any HTTPS web address. Under the Advanced Panel's Encryption tab,
select the Use SSL 3.0 and Use TLS 1.0 options.
BROWSER ADD-ONS
Above and beyond Firefox's native security features, these add-ons impart some
much-needed defensive measures into your browser.
9. HTTPS Everywhere
Virtually every reputable website and web application offers an SSL version to
accommodate encrypted web communication, including Google Apps. This keeps
any data you share with the website — especially passwords — away from prying
eyes. The HTTPS Everywhere Firefox Add-On defaults you to the SSL version of any
website, making sure you don't accidentally opt for the less secure version.
10. NoScript
Even with Firefox's advanced JavaScript settings, you're still at risk from clickjacking
attacks. The NoScript add-on only allows JavaScript from trusted sites to run on
your browser. If they're not on the safe list, the site's script won't run, keeping
JavaScript fully at bay.
10 STEPS TO OPTIMIZE MOZILLA FIREFOX FOR GOOGLE APPS SECURITY
Backupify, Inc. 5
ABOUT BACKUPIFY
Backupify is the leading provider of backup and restore solutions for SaaS
applications including Google Apps, Salesforce, Facebook, Twitter, and more.
Backupify was founded in 2008 and is based in Cambridge, MA. Backupify has over
200,000 users trusting us with more than 500 million documents, two billion email
messages and 350 terabytes of data.
WHY BACKUP CLOUD DATA?
Your data is one of the most critical assets of your business. Like any important
asset, it should be insured. While most SaaS providers, including Google and
Salesforce, offer state-of-the-art disaster recovery capabilities that protect you
from some forms of data loss, you are still at risk for data loss due to user error,
hacked accounts and third-party application bugs. To fully replicate your on-
premise backup capabilities in the cloud, you need the ability to perform granular
restores, and to retain the control that comes from having your own secure
second copy of the data in your SaaS applications.
FIND OUT MORE
If you're interested in the peace of mind you get from an automated Google Apps
backup solution, feel free to contact us directly at info@backupify.com.
 Web http://www.backupify.com
 Phone 1.800.571.4984
 Twitter http://twitter.com/backupify
Backupify logo is a registered trademark or registered trademarks of Backupify, Inc. All other names
may be the trademarks or registered trademarks of their respective owners.
© 2012 Backupify, Inc. Item: GAT-WP-EN-200110608

More Related Content

PDF
WordPress Security
PPTX
Web Browser
PDF
WordPress Security 2018
PPTX
Web browsers
PPTX
Joomla spécialiste
PPTX
web browsers
PDF
NWSLTR_Volume8_Issue2
PDF
How Firefox Works
WordPress Security
Web Browser
WordPress Security 2018
Web browsers
Joomla spécialiste
web browsers
NWSLTR_Volume8_Issue2
How Firefox Works

What's hot (18)

PDF
Prezen2
PDF
Individual Slide Presentation
PDF
Week11
PPTX
Wp security presentation
PDF
NetVU Tech-4290/4390
PPTX
Web browsers
PPTX
Web browsers
PPTX
Internet
PPTX
BROWSERS!
PDF
Week11
PPTX
How To Lock Down And Secure Your Wordpress
PPTX
Web browsers
PDF
How to install and configure lamp (linux,apache mysql mariadb,php) with jooml...
PDF
ODP
W11ps
PDF
How to install and configure microsoft iis 7.5, php, my sql, and phpmyadmin
PDF
Sw2 prezen2.obp
PDF
Slide2
Prezen2
Individual Slide Presentation
Week11
Wp security presentation
NetVU Tech-4290/4390
Web browsers
Web browsers
Internet
BROWSERS!
Week11
How To Lock Down And Secure Your Wordpress
Web browsers
How to install and configure lamp (linux,apache mysql mariadb,php) with jooml...
W11ps
How to install and configure microsoft iis 7.5, php, my sql, and phpmyadmin
Sw2 prezen2.obp
Slide2
Ad

Viewers also liked (20)

PPT
Försvarsutskottet 10 04-27
PDF
Il catalogo 2010 Asset CSP
PPT
Powerpoint
PPTX
간지Ppt
PPTX
Forum PA challenge: HALADIN's
PDF
Reflections of a Visionary\'s Path
PDF
Presentazione mongo torino
PDF
Dasar html
PPT
Music Magazine Coursework Planning!
ODP
Diapositives amsterdam
PPT
2010 Eurocom Worldwide Technology Survey
PPTX
What is Lean Startup?
PDF
Niem tin-khong-tat
PPSX
Upos Jan 10
PPTX
Smart Players or Dumb pipes - Digital banking trends 2012
PPT
Reproduction
PDF
Founders Institute / Fall 2016 Mentor Deck
PDF
Power shot g15_camera_user_guide_it
PPT
Radisson Hotel Whittier Feb2010 Powerpoints
Försvarsutskottet 10 04-27
Il catalogo 2010 Asset CSP
Powerpoint
간지Ppt
Forum PA challenge: HALADIN's
Reflections of a Visionary\'s Path
Presentazione mongo torino
Dasar html
Music Magazine Coursework Planning!
Diapositives amsterdam
2010 Eurocom Worldwide Technology Survey
What is Lean Startup?
Niem tin-khong-tat
Upos Jan 10
Smart Players or Dumb pipes - Digital banking trends 2012
Reproduction
Founders Institute / Fall 2016 Mentor Deck
Power shot g15_camera_user_guide_it
Radisson Hotel Whittier Feb2010 Powerpoints
Ad

Similar to 10 Steps to Optimize Mozilla Firefox for Google Apps Security (20)

PDF
5 Steps to Secure Google Drive
PPTX
Rock your firefox
PPTX
How firefox works
PPTX
How to use firefox like a boss
PDF
Getting Browsers to Improve the Security of Your Webapp
PDF
Ce hv6 module 53 hacking web browsers
PPTX
Using firefox like a boss
PDF
Cscu module 06 internet security
PDF
Mozilla firefox support phone number
PDF
Security and Privacy on the Web in 2016
PDF
How to Secure Web Apps — A Web App Security Checklist
PDF
F5 Web Application Security
PDF
Data Mining - GCPCUG May 2011
PPT
Bank One App Sec Training
PPTX
Web applications security conference slides
PDF
Getting Started with Firefox
PDF
Cscu module 06 internet security
PPTX
Fy09 Sask Tel Learn It Ie7 And Ie8 Joel Semeniuk
PDF
Secrets of Google VRP by: Krzysztof Kotowicz, Google Security Team
PDF
無題 1
5 Steps to Secure Google Drive
Rock your firefox
How firefox works
How to use firefox like a boss
Getting Browsers to Improve the Security of Your Webapp
Ce hv6 module 53 hacking web browsers
Using firefox like a boss
Cscu module 06 internet security
Mozilla firefox support phone number
Security and Privacy on the Web in 2016
How to Secure Web Apps — A Web App Security Checklist
F5 Web Application Security
Data Mining - GCPCUG May 2011
Bank One App Sec Training
Web applications security conference slides
Getting Started with Firefox
Cscu module 06 internet security
Fy09 Sask Tel Learn It Ie7 And Ie8 Joel Semeniuk
Secrets of Google VRP by: Krzysztof Kotowicz, Google Security Team
無題 1

More from Datto (20)

PDF
What is Network Continuity? Why Does it Matter for Small Businesses?
PDF
13 Ransomware Statistics That Will Make You Rethink Data Protection
PDF
What is Ransomware?
PDF
14 Ways to Increase Google Apps Adoption at Your School
PPTX
What's In a Cloud? Purpose-Built vs. Public
PPTX
Follow the Yellow Brick Road to Google Apps Setup & Security Success
PDF
The Wizards Behind Google Apps: 11 Google Apps Setup Tips for Admins by Admins
PDF
15 Effective Tips for Schools Using Google Apps for Education
PPTX
Midmarket CIO Forum Spring 2014
PDF
Protecting Data in the Cloud: The Truth about SaaS Backup
PPTX
Midmarket CIO Forum 2013 Presentation
PDF
Salesforce Data Loss in the Wild Wild West
PDF
Growing Up Google - Google Apps for EDU Adoption [Infographic]
PPTX
CIO Cloud Summit nyc_backupify
PDF
Google Apps Demographics Study [Infographic]
PDF
Google Apps Data Loss [Infographic]
PDF
Data Liberation Awards [Infographic]
PDF
The Value of Gmail Accounts [Infographic]
PDF
13 Steps to Safely Deprovision and Delete a Google Apps User
PDF
Do You Have Protection?
What is Network Continuity? Why Does it Matter for Small Businesses?
13 Ransomware Statistics That Will Make You Rethink Data Protection
What is Ransomware?
14 Ways to Increase Google Apps Adoption at Your School
What's In a Cloud? Purpose-Built vs. Public
Follow the Yellow Brick Road to Google Apps Setup & Security Success
The Wizards Behind Google Apps: 11 Google Apps Setup Tips for Admins by Admins
15 Effective Tips for Schools Using Google Apps for Education
Midmarket CIO Forum Spring 2014
Protecting Data in the Cloud: The Truth about SaaS Backup
Midmarket CIO Forum 2013 Presentation
Salesforce Data Loss in the Wild Wild West
Growing Up Google - Google Apps for EDU Adoption [Infographic]
CIO Cloud Summit nyc_backupify
Google Apps Demographics Study [Infographic]
Google Apps Data Loss [Infographic]
Data Liberation Awards [Infographic]
The Value of Gmail Accounts [Infographic]
13 Steps to Safely Deprovision and Delete a Google Apps User
Do You Have Protection?

Recently uploaded (20)

PDF
Agricultural_Statistics_at_a_Glance_2022_0.pdf
PDF
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
PDF
Machine learning based COVID-19 study performance prediction
PDF
Mobile App Security Testing_ A Comprehensive Guide.pdf
PDF
Diabetes mellitus diagnosis method based random forest with bat algorithm
PDF
cuic standard and advanced reporting.pdf
PDF
The Rise and Fall of 3GPP – Time for a Sabbatical?
PPTX
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
PDF
Advanced methodologies resolving dimensionality complications for autism neur...
PDF
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
PPTX
Programs and apps: productivity, graphics, security and other tools
PPTX
Big Data Technologies - Introduction.pptx
PPTX
Digital-Transformation-Roadmap-for-Companies.pptx
PDF
Chapter 3 Spatial Domain Image Processing.pdf
PPTX
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
PDF
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
PDF
Electronic commerce courselecture one. Pdf
PDF
Network Security Unit 5.pdf for BCA BBA.
PDF
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
DOCX
The AUB Centre for AI in Media Proposal.docx
Agricultural_Statistics_at_a_Glance_2022_0.pdf
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
Machine learning based COVID-19 study performance prediction
Mobile App Security Testing_ A Comprehensive Guide.pdf
Diabetes mellitus diagnosis method based random forest with bat algorithm
cuic standard and advanced reporting.pdf
The Rise and Fall of 3GPP – Time for a Sabbatical?
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
Advanced methodologies resolving dimensionality complications for autism neur...
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
Programs and apps: productivity, graphics, security and other tools
Big Data Technologies - Introduction.pptx
Digital-Transformation-Roadmap-for-Companies.pptx
Chapter 3 Spatial Domain Image Processing.pdf
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
Electronic commerce courselecture one. Pdf
Network Security Unit 5.pdf for BCA BBA.
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
The AUB Centre for AI in Media Proposal.docx

10 Steps to Optimize Mozilla Firefox for Google Apps Security

  • 1. TEN STEPS TO OPTIMIZE MOZILLA FIREFOX FOR GOOGLE APPS SECURITY BACKUPIFY – APRIL 2012
  • 2. 10 STEPS TO OPTIMIZE MOZILLA FIREFOX FOR GOOGLE APPS SECURITY Backupify, Inc. 2 INTRODUCTION Firefox has long been considered one of, if not the, most reliable and adaptable browser available today, but that standing is easily undermined by insecure browser settings and user preferences. When running a Software-as-a-Service solution like Google Apps, lax browser security can prove fatal to a Google Apps domain, and to your business. Below are 10 steps you take to maximize Firefox's defenses against online threats and keep your Google Apps domain safe and secure. BROWSER SETTINGS Firefox's reputation as a highly customizable browser is well earned, so your Google Apps security measures should begin with the Firefox's internal settings. 1. Disable Advanced JavaScript For absolute maximum security, you should disable JavaScript altogether, as hackers can use it to execute a number of unscrupulous actions in your browser. However, JavaScript is necessary to operate the interactive features of many online applications, including portions of the Google Apps suite. The good news is Firefox can disable only the more dangerous elements of JavaScript. Under the Content Panel's Advanced JavaScript Settings, deselect the options to Move Or Resize Existing Windows, Raise Or Lower Windows, and Disable Or Replace Context Menus. This will prevent websites from opening hidden browser windows you can't easily dismiss or control. 2. Set Custom Browser History Configuration Firefox offers a Private Browsing Mode that prevents it from recording any passwords, form autofill data, accepting cookies, or saving other history data. This is prudent, as it prevents hackers from targeting your browser to obtain this access information. You can permanently opt into Private Browsing mode by selecting the Never Remember History option in the Privacy Panel, but the smarter move is to configure a Custom History Setting. Within the Privacy Panel's Custom Settings
  • 3. 10 STEPS TO OPTIMIZE MOZILLA FIREFOX FOR GOOGLE APPS SECURITY Backupify, Inc. 3 For History section, deselect every option except Remember Download History. This will ensure you have a record of any items downloaded — knowingly or otherwise — but that any other history data (notably login information) won't be saved in the browser. 3. Show the Downloads Window When Downloading Files Some hyperlinks disguise malicious software downloads. Selecting the Show The Downloads Window option in the General Options panel ensures that nothing gets dropped on your hard drive without your knowledge. 4. Enable Security Warnings Firefox provides a number of defenses and security warnings by default, but you should be certain these options are enabled. Under the Security Panel, select the Warn Me When Sites Try To Install Add-Ons, which will prevent any malware disguised as video player plug-ins or game features from sneaking onto your browser. Then select Block Reported Attack Sites and Block Reported Web Forgeries, which are pretty self-explanatory. 5. Disable Password Storage Storing passwords in your browser simply makes your passwords vulnerable to browser attacks, putting your Google Apps account and domain at risk. While less convenient, you should disable the password storage option. 6. Set Alerts for Offline Website Data Storage Some websites will try to store data locally. Most of these requests are legitimate — Google Apps can occasionally make them in relation to its Offline Mode — but you should be aware when these requests are made. Under Firefox's Advanced Panel's Network tab, select the Tell Me When A Website Asks To Store Data For Offline Use option to ensure no offline data is saved without your knowledge and permission.
  • 4. 10 STEPS TO OPTIMIZE MOZILLA FIREFOX FOR GOOGLE APPS SECURITY Backupify, Inc. 4 7. Automatically Install Updates Keeping Firefox up to date means you'll always have the latest security patches and defenses running on your browser. Under the Advanced Panel's Update tab, select the Automatically Install Updates option and the related Warn Me If This Will Disable Any Of My Add-Ons option. The former will keep you running the latest version of Firefox; the latter will let you know if any of your security plug-ins are incompatible with the latest Firefox update. 8. Enable Encryption While selecting the SSL version of any website is prudent, Firefox can enforce the use of the latest and most effective Secure Sockets Layer and related encryption protocols at any HTTPS web address. Under the Advanced Panel's Encryption tab, select the Use SSL 3.0 and Use TLS 1.0 options. BROWSER ADD-ONS Above and beyond Firefox's native security features, these add-ons impart some much-needed defensive measures into your browser. 9. HTTPS Everywhere Virtually every reputable website and web application offers an SSL version to accommodate encrypted web communication, including Google Apps. This keeps any data you share with the website — especially passwords — away from prying eyes. The HTTPS Everywhere Firefox Add-On defaults you to the SSL version of any website, making sure you don't accidentally opt for the less secure version. 10. NoScript Even with Firefox's advanced JavaScript settings, you're still at risk from clickjacking attacks. The NoScript add-on only allows JavaScript from trusted sites to run on your browser. If they're not on the safe list, the site's script won't run, keeping JavaScript fully at bay.
  • 5. 10 STEPS TO OPTIMIZE MOZILLA FIREFOX FOR GOOGLE APPS SECURITY Backupify, Inc. 5 ABOUT BACKUPIFY Backupify is the leading provider of backup and restore solutions for SaaS applications including Google Apps, Salesforce, Facebook, Twitter, and more. Backupify was founded in 2008 and is based in Cambridge, MA. Backupify has over 200,000 users trusting us with more than 500 million documents, two billion email messages and 350 terabytes of data. WHY BACKUP CLOUD DATA? Your data is one of the most critical assets of your business. Like any important asset, it should be insured. While most SaaS providers, including Google and Salesforce, offer state-of-the-art disaster recovery capabilities that protect you from some forms of data loss, you are still at risk for data loss due to user error, hacked accounts and third-party application bugs. To fully replicate your on- premise backup capabilities in the cloud, you need the ability to perform granular restores, and to retain the control that comes from having your own secure second copy of the data in your SaaS applications. FIND OUT MORE If you're interested in the peace of mind you get from an automated Google Apps backup solution, feel free to contact us directly at info@backupify.com.  Web http://www.backupify.com  Phone 1.800.571.4984  Twitter http://twitter.com/backupify Backupify logo is a registered trademark or registered trademarks of Backupify, Inc. All other names may be the trademarks or registered trademarks of their respective owners. © 2012 Backupify, Inc. Item: GAT-WP-EN-200110608