For those folks out there who are extra suspicious about the browsing they do Online, and want to really be safe - picking up NoScript might be a good idea. Once you install this, no JavaScript or Java will be able to run via a Web site without getting your permission first.
Extra protection for your Firefox: NoScript allows JavaScript, Java and other executable content only for trusted domains of your choice, e.g. your home-banking web site.
Of course it will take a while to train, as far as allowing the good Web sites you visit to run the code they need to run, but if you want to be extra safe I would recommend at least trying this option out.
For more help, check these out...

