Re: techport80
- Posted by Kat <kat at kogeijin.com> Sep 26, 2002
- 549 views
On 19 Sep 2002, at 19:11, jbrown105 at speedymail.org wrote: > > On 0, Kat <kat at kogeijin.com> wrote: > > > Thanks for posting the article on Java security. Very informative. I > > > would like to point out a new key points about that article and that web > > > page though. Also I agree with you in the fact that newer isn't always > > > better. Further, I would like to state that JavaScript is used sparingly > > > on > > > my website and that you can read anything on my site should you choose to > > > turn JavaScript off. > > > > Strangely, turning it off, *if you can*, doesn't prevent your puter from > > going > > out to download the latest addons to the scripting languages, as i found out > > the hard way a few months ago. They are downloaded, even if you had checked > > Do > > Not Run, in case you might want to run them later. The badly botched > > auto-install deleted/corrupted needed files for IE and Explorer. I am still > > missing the proper icon for IE, but that's no problem. > > > > Ah, the joys of Linux and Opera> > > > JavaScript is safe. There is very little you can do with > > > JavaScript, as a standalone tool, that is not what it was intended to > > > do. When combined with other tools, JavaScript poses a little more of a > > > risk, but that risk is minimal. > > > > I lost a computer to javascript. The bios was written to, and was not > > recoverable or replaceable. The harddrive was corrupted, and i lost a lot of > > material. Javascript is used for redirects, windows that can't be closed, > > etc > > etc. > > > > Its hard to believe thats possible. I dont see how javascript can > corrupt > a filesystem, or overwrite a BIOS!! What browser and what version and > which > site was this? See: http://www.pcworld.com/news/article/0,aid,104910,00.asp That url mentions the Java bug (from win95 - winXP), the bug in DOM that allows javascript to remote admin the puter, and you'll see a link to the Back Orfice (er,, office,, umm, "help and support") bug in XP, and a link to the page about the XP SP1 causing XP to nuke itself. Kat