3 ms·
>Microsoft has introduced an optional feature to its Edge browser that applies more stringent security controls when users visit unfamiliar websites. Unfamilia
by 1MachineElf 4y ago
>Microsoft has introduced an optional feature to its Edge browser that applies more stringent security controls when users visit unfamiliar websites.
Unfamiliar websites? As if the websites in Microsoft's list don't have an incentive to harvest as much data as possible.
>Enhanced security mode mitigates memory-related vulnerabilities by disabling just-in-time (JIT) JavaScript compilation, while activating additional operating system protections for the browser such as arbitrary code guard and hardware-enforced stack protection, according to Microsoft.
No JIT compilation of JS. So it makes the browser slower...
>It said these changes provide “defense in depth” by making it harder for malicious sites to leverage unpatched vulnerabilities in order to write to executable code into memory.
Why can't Microsoft just patch these "unpatched vulnerabilities"?
>Sites that use WebAssembly (WASM), a binary instruction format for stack-based virtual machines, are not currently supported by the feature. Sites that need WASM can be added to the exception site list.
Breaks WASM. A net-negative, IMHO.