FileZilla Portable 3.1.0.1 Released

John T. Haller's picture
Submitted by John T. Haller on August 5, 2008 - 5:03pm

FileZilla logoFileZilla Portable 3.1.0.1 has been released. FileZilla Portable is the popular FileZilla FTP client packaged as a portable app, so you can take your ftp client, server list and settings with you. This new release updates FileZilla to the latest version and now handles SFTP hashes, making it more secure. All users are highly encouraged to upgrade to fix this possible privacy and security issue. It's packaged in PortableApps.com Format for easy use from any portable device and integration with the PortableApps.com Suite. And it's open source and completely free.

Read on for more details...

Features

filezilla_portable_small.pngFileZilla is a fast and reliable FTP client with lots of handy features. It supports resume on both downloads and uploads, timeout detection, firewall support, SOCKS4/5 and HTTP1.1 support, SSL, SFTP and more, all with an intuitive drag and drop interface. Learn more about FileZilla...

Privacy / Security Issue Fixed in 3.1.0.1

In previous versions, as with standard zip versions and other portable packages of FileZilla, if you wished to store SFTP hashes between sessions, the only option available was to store it in the registry in the same location as regular PuTTY. And this would be left behind on the PC. This poses two issues. First, if you accidentally saved it, you'd leave a trail of what servers you connected to via SFTP. Second, if you relied on the local PC's cache of a specific server, it might theoretically be possible to spoof the cached hash in conjunction with a change to the DNS record via a host file or similar measuer and connect you to a different server for the purpose of stealing your password.

Though this situation is highly unlikely, we have added a fix that allows you to keep your cached hashes with you to prevent either of the above situations from occurring. This fix is only in FileZilla Portable 3.1.0.1 and higher from PortableApps.com. The standard FileZilla zip file (which is not really meant to be portable) and other portable packages are vulnerable.

New In This Release

FileZilla was updated to 3.1.0.1 (release notes) and handles SFTP hashes portably fixing the security and privacy issue mentioned above.

PortableApps.com Installer / PortableApps.com Format

FileZilla Portable is packaged in a PortableApps.com Installer so it will automatically detect an existing PortableApps.com installation when your drive is plugged in. And it's in PortableApps.com Format, so it automatically works with the PortableApps.com Suite including the Menu and Backup Utility.

Download

FileZilla Portable is available for immediate download from the FileZilla Portable homepage. Get it today!

Story Topic:

Comments