3 ms·
Of course. What I do not want or need is code that's been part of the web since about 2016-2020, which is arbitrary code execution by complete strangers. Not ev
by nonrandomstring 3y ago
Of course. What I do not want or need is code that's been part of the
web since about 2016-2020, which is arbitrary code execution by
complete strangers. Not even in a sandboxed disposable web browser.
Now I suspect you'll want to tell me how actually Javascript is
perfectly safe... and that's a conversation we can save for another
day for the sake of both our dignity and friendship. I'm afraid it's
my job to know otherwise.
- scarface_74 3y agoWell despite your appeal to authority… If you knew about that many exploits in the wild, surely you could (white hat) tell the company who created the browser or (black hat) make a lot of money by selling it to three letter agencies or private companies that sell it to three letter agencies. However, in the real world, a fully patched Android or iOS operating system - especially one that is in “lock down mode” is not any more susceptible to Zero day exploits than the number of other exploitable parts of the OS that you also don’t have any control over. And even if you only run open source software, how long was the OpenSSL bug in operating systems before it was discovered? Do you use your mobile’s messaging system? That’s been one of the primary targets of exploits that will target you directly.
- nonrandomstring 3y agoI appreciate your sincere and sweet overtures scarface, but I'm just not that kinda javascript girl. You're right though, everything out there is riddled with holes. Let's not give up though.