Frederik Braun �
A web/browser security nerd. Working on security for Firefox and the web at Mozilla. Taught web security at Ruhr Uni Bochum.
I often spend my summer on multi-week #bikepacking trips with the family.
The posts here are my own and I do not speak for my employer
It's Interop'27 season! See the currently proposed focus areas for browsers to work on wide interoperability by the end of 2027.
A friendly person has suggested we focus on the Sanitizer API https://github.com/web-platform-tests/interop/issues/1336 which is great. But I'd love browsers to go even further:
- Support other "positions" than just
setHTML(e.g., prepend, append etc) - Trusted Types
createParserOptionsto prescribe a sanitizer instead of returning HTML texts
More here https://github.com/web-platform-tests/interop/issues/1416
Meet the Hackers: Samuel Groß | State of Browser/JavaScript Engine Exploitation
Where do the people hang that read our hacks blog post and then went through all of the bugs that we opened up? Really eager for the deeper, informed takes now :) https://hacks.mozilla.org/2026/05/behind-the-scenes-hardening-firefox/
