Firefox Add-ons

Burr

by Gen · 1 users
e4205cdf-f397-597c-ac4f-25d6d776fd4d | v1.0.0
49/ 100
MEDIUM risk
Risk verdict
Review before use

Score-based assessment (medium risk, 49/100). No analyst review available.

Analysis record

Analysed
2 weeks ago
Version
v1.0.0
Artifact
SHA256 782…656
Source
Findings (non-IoC)

Evidence ledger

Ranked by severity · findings with a source location link to the code viewer

8 detail rows

YARA Rule Matches

4 rules
SeverityRuleHitsFilesMetadata
LOWpostinstall file manipulation 2
options/options.htmlpopup/popup.js
-
LOWpostinstall environment access 1
popup/popup.js
-
LOWpostinstall system command 2
popup/popup.cssoptions/options.css
-
LOWpostinstall file download 2
popup/popup.jsoptions/options.js
-

Network Indicators

Concrete URLs, domains, IPs, emails, and hashes extracted from the analyzed artifact.

12 total
...

Network indicators are queued for lazy loading

Scroll this section into view to load the detailed rows.

Publisher Evidence

Limited evidence

Gen

Publisher identity, store signals, distribution reach, and warning signals used for context. Treat this as supporting evidence, not a clean bill of health.

Firefox does not expose the same publisher verification data as IDE stores, so this score is deliberately conservative.

24
Noisy-finding weight
x1.00
Publisher domain
No domain
Missing
Store verification signal
Limited signal
Limited
Extension portfolio
1
Portfolio

13 evidence rows available.

Finding Categories

12
IoC Indicators

YARA Rules Matched

4 rules(7 hits)
postinstall file manipulation postinstall environment access postinstall system command postinstall file download

Requested Permissions

2 permissions
tabs
Medium
storage
Low

Security Analysis Summary

Security Analysis Overview

Burr is a Firefox Add-ons extension published by Gen. Version 1.0.0 has been analyzed by the Risky Plugins security platform, receiving a risk score of 48.74/100 (MEDIUM risk) based on 20 security findings.

Risk Assessment

This extension presents moderate security risk. Several findings were detected that may warrant attention. Users should carefully review the permissions and findings before installation.

Findings Breakdown

  • Medium: 13 finding(s)
  • Low: 7 finding(s)

What Was Analyzed

The security assessment covers multiple analysis categories:

  • Malware Detection: YARA rule matching against 2,400+ malware signatures
  • Secret Detection: Scanning for exposed API keys, tokens, and credentials
  • Static Analysis: Code-level security analysis for common vulnerability patterns
  • Network Analysis: Detection of suspicious network communications and endpoints
  • Obfuscation Detection: Identification of code obfuscation techniques

Developer Information

Burr is published by Gen on the Firefox Add-ons marketplace. The extension has approximately 1 users.

Recommendation

Exercise caution with this extension. Review the detailed findings and ensure the requested permissions align with the extension's stated functionality before installation.

About This Extension

Burr is a lightweight, private browser extension that attaches notes and reminders to websites. Notes anchor to a domain and reappear when you return, with reminders and snooze. All note data lives entirely within your browser profile: no external servers, no tracking, no telemetry. Backup and restore at any time via JSON export.

Frequently Asked Questions