5 ms·
I use NoScript as well (and I wish more people would) but to be fair I doubt the users who were part of the botnet even noticed it at all. It's only github who
by jdjb 12y ago
I use NoScript as well (and I wish more people would) but to be fair I doubt the users who were part of the botnet even noticed it at all. It's only github who would've benefited from these users running NoScript.
- coldpie 12y agoYeah, it was obviously a lighthearted comment, but the larger issue is that every web user is running someone else's untrusted code on every website they visit. Frankly I'm surprised these kinds of attacks aren't more common. NoScript helps mitigate this issue, and while it has lots of other incidental bonuses that a nerd like myself cares about, I freely admit it results in a worse end-user experience for almost everyone else.
- eli 12y agoThey could have done a similar attack with an <IMG> tag. Or do you block images too?
- therealidiot 12y agoSomething like Request Policy could cover this
- repsilat 12y agoErm, you don't? I suggest you read the Basilisk FAQ before you get into real trouble... http://ansible.uk/writing/c-b-faq.html http://ansible.uk/writing/c-b-faq.html