funsec mailing list archives
Re: Don't click that link - it may re-program your router?
From: Jeff Kell <jeff-kell () utc edu>
Date: Mon, 19 Feb 2007 22:22:57 -0500
Gary Funck wrote (quoting newsfactor.com):
An additional line of defense is to disable JavaScript on untrusted Web sites, he added.
This is becoming an increasingly useless step at the macro level -- a "trusted" website. More and more websites are now allowing "user supplied" javascript. If you trust facebook or myspace, you're trusting all the javascript on all the user pages and even some "leave comment" areas. If that's not bad enough, every purveyor of meta-deta these days seems to be rushing to be the next to allow embedded javascript. Look at Quicktime, PDF, etc. Javascript is evil. But rather than seeing any sense of restraint, control, or restrictions; instead the web design and content management world is making a mad dash to be the next lemming. Jeff _______________________________________________ Fun and Misc security discussion for OT posts. https://linuxbox.org/cgi-bin/mailman/listinfo/funsec Note: funsec is a public and open mailing list.
Current thread:
- Don't click that link - it may re-program your router? Gary Funck (Feb 19)
- Re: Don't click that link - it may re-program your router? Jordan Wiens (Feb 19)
- Re: Don't click that link - it may re-program your router? Jeff Kell (Feb 19)
- RE: Don't click that link - it may re-program your router? Blanchard_Michael (Feb 20)
- RE: Don't click that link - it may re-program your router? Michal Zalewski (Feb 20)
- RE: Don't click that link - it may re-program your router? Blanchard_Michael (Feb 20)
- Re: Don't click that link - it may re-program your router? David Lodge (Feb 25)
- Re: Don't click that link - it may re-program your router? Michal Zalewski (Feb 25)
- RE: Don't click that link - it may re-program your router? Michal Zalewski (Feb 20)
