Comodo Dragon

For the lizard, see Komodo dragon.
Comodo Dragon

Comodo Dragon 16.1, running on Windows 7, showing a security alert after opening Wikimedia Commons
Developer(s) Comodo Group
Stable release 46.9.15.424 (November 26, 2015 (2015-11-26)[1]) [±]
Development status Active
Operating system Microsoft Windows
Engine Blink[2]
Platform IA-32
Size 50.9 MB
Available in English
Type Web browser[3]
License Freeware
Website browser.comodo.com

Comodo Dragon is a freeware web browser. It is based on Chromium and is produced by Comodo Group. Sporting a similar interface to Google Chrome, Dragon does not implement Chrome's user tracking and some other potentially privacy-compromising features, and provides additional security measures, such as indicating the authenticity and relative strength of a website's SSL certificate.[3][4]

Dragon has been criticized for disabling critical security measures implemented in Google Chrome and has been criticized for being unresponsive to security concerns.[5]

Security issues

A Google engineer publicly disclosed a serious security vulnerability in Comodo Dragon after Comodo failed to respond to the issue within the 90 days Google provides software vendors. The advisory warns users who install Comodo Dragon that Dragon replaces their default browser, hijacks DNS settings, and disables the same origin policy, which exposes users by allowing malicious websites to access private data.[6]

Comodo's first attempt to patch the issue was unsuccessful.[7]

The same origin policy protects users by ensuring scripts are limited to accessing resources from the same website, which prevents malicious websites from accessing private data on another webpage.[8]

Features

Upon installation, Comodo Dragon offers the opportunity to configure either the Comodo Dragon or the user's entire computer to use Comodo's own DNS servers instead of the user's Internet service provider.[9] Comodo Dragon performs additional checks on the SSL digital certificates of secure websites, and informs users if a site's certificate may be of insufficient strength. It includes an on-demand site inspector[10] designed to determine if a site hosts malicious code.[11]

Instead of Google Updater, Comodo Dragon features its own built-in updater. If Dragon is uninstalled, users are given the option of keeping Dragon's cache and cookie files or deleting them.[12]

In addition, the following Google Chrome features are removed or disabled in Dragon:[13][14][15][16]

See also

References

  1. "Comodo Dragon 46 is now available for download.". Comodo Group. 2015-11-26. Retrieved 2015-12-01.
  2. JoWa, Product Translator, Global Moderator (2 May 2014). "Blink, since v. 28". Comodo Group, Inc. Retrieved 3 August 2014.
  3. 1 2 "Dragon Internet Browser – Comodo Dragon Web Browser". Comodo Group, Inc. Retrieved 26 April 2014.
  4. Polishchuk, Polina (25 April 2014). "Comodo Dragon - Free download and software reviews - CNET Download.com". CNet.com. Retrieved 26 April 2014.
  5. "Custom Web browser from Comodo poses severe security threat, researcher says".
  6. "Google calls out Comodo's Chromodo Chrome-knockoff as insecure crapware".
  7. "Custom Web browser from Comodo poses severe security threat, researcher says".
  8. "Google says Comodo’s ‘secure’ browser isn’t safe to use at all".
  9. Spencer, Spanner (11 April 2014). "Four Useful Alternative Browsers Based On Google Chrome- Lifehacker Australia". Allure Media. Retrieved 26 April 2014.
  10. "Online Webpage Scanning for Malware Attacks- Web Inspector Online Scan". Comodo CA Ltd. Retrieved 26 April 2014.
  11. Horton, Steve (19 April 2010). "Comodo Dragon review - PC Advisor". IDG UK. Retrieved 26 April 2014.
  12. "Comodo Dragon Review- The Secured Browser on Chromium- PC Security". PC Security. 27 March 2013. Retrieved 26 April 2014.
  13. "How is Dragon better? - Help - CD". Comodo Forum. 16 January 2011. Retrieved 26 April 2014.
  14. http://lifehacker.com/four-alternative-useful-browsers-based-off-of-google-c-1558525397 Four Alternative, Useful Browsers Based On Google Chrome, Spanner Spencer, 4/07/14, Lifehacker
  15. How to Harden Your Browser Against Malware and Privacy Concerns, Tech Support Alert
  16. Make Your Browser More Resilient to Malwares and Privacy Concerns, Security Gladiators
  17. "View of /trunk/src/chrome/browser/google/google_url_tracker.cc". Retrieved 15 November 2010. Source code comment on line 31
  18. "Google Chrome, Chromium, and Google". Retrieved 28 January 2010. See Which Google Domain

Further reading

External links

This article is issued from Wikipedia - version of the Wednesday, March 09, 2016. The text is available under the Creative Commons Attribution/Share Alike but additional terms may apply for the media files.