flat assembler
Message board for the users of flat assembler.
 Home   FAQ   Search   Register 
 Profile   Log in to check your private messages   Log in 
flat assembler > Heap > Why we should always disable JS (and flash)

Goto page Previous  1, 2, 3, 4, 5, 6, 7
Author
Thread Post new topic Reply to topic
revolution
When all else fails, read the source


Joined: 24 Aug 2004
Posts: 14673
Location: Origae-6
JS can jump both sandboxes and VMs. And it only takes one rogue/hacked website to do it. You can't trust JS. Ever. You never know what is being sent to your browser.

Even "trusted" websites become untrusted when your connection has been intercepted. And not just nation states can intercept your connection. Hotel WiFi is notorious for breaking TLS. Many large buildings have their own connection infrastructure. Many offices, businesses, universities and schools will connect you in their own way. And it only takes one bad node in any of the chain of boxes and now your computer has become part of a botnet.
Post 24 Mar 2017, 08:44
View user's profile Send private message Visit poster's website Reply with quote
revolution
When all else fails, read the source


Joined: 24 Aug 2004
Posts: 14673
Location: Origae-6
http://www.theregister.co.uk/2017/04/01/invisible_bitcoin_paywall/

Quote:
HTML5 offers a feature called “Web Workers” that lets web pages run JavaScript in the background of web pages. Those scripts have nothing to do with the user interface and can be invisible to users, other than the fact they consume some processor cycles.

The Register has used Web Workers to create a distributed bitcoin mining operation.

Yay, let's allow all websites to steal our CPU cycles. Because of course doing work for remote websites is much more important than anything you might be doing. Rolling Eyes
Post 03 Apr 2017, 02:02
View user's profile Send private message Visit poster's website Reply with quote
Furs



Joined: 04 Mar 2016
Posts: 290
Well what you say is correct in principle, but that is just April's Fools Laughing (because otherwise they'd keep their mouths shut)
Post 03 Apr 2017, 10:57
View user's profile Send private message Reply with quote
YONG



Joined: 16 Mar 2005
Posts: 7020
Location: 22° 15' N | 114° 10' E

Furs wrote:
... but that is just April's Fools Laughing

The mod who always tries to trick other forum members into visiting his/her fake website got fooled! Laughing

Reminds me of this word: comeuppance.

Wink
Post 03 Apr 2017, 11:11
View user's profile Send private message Visit poster's website Reply with quote
revolution
When all else fails, read the source


Joined: 24 Aug 2004
Posts: 14673
Location: Origae-6

YONG wrote:

Furs wrote:
... but that is just April's Fools Laughing

The mod who always tries to trick other forum members into visiting his/her fake website got fooled!

I already knew I am not perfect. So confirmation of such things is good. Smile
Post 03 Apr 2017, 14:14
View user's profile Send private message Visit poster's website Reply with quote
Display posts from previous:
Post new topic Reply to topic

Jump to:  
Goto page Previous  1, 2, 3, 4, 5, 6, 7

< Last Thread | Next Thread >

Forum Rules:
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You can attach files in this forum
You can download files in this forum


Powered by phpBB © 2001-2005 phpBB Group.

Main index   Download   Documentation   Examples   Message board
Copyright © 2004-2016, Tomasz Grysztar.