Supercookies

Ted Smith teddks at gmail.com
Fri Aug 21 14:10:53 UTC 2009


On Fri, 2009-08-21 at 07:47 +0000, Paul Ferguson wrote:
> > Uuups, it seems BetterPrivacy allows remote code execution:
> 
> Easily defeated:
> 
> http://objection.mozdev.org/
> 
> - ferg
> 

Am I the only person who thinks it is generally a bad idea to keep
adding surface area to a browser that is supposed to be anonymous? If we
have an extension to rein in a plugin, and an extension for that
extension, that is a _lot_ more potential for exploits than just
removing that plugin.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 835 bytes
Desc: This is a digitally signed message part
URL: <http://lists.torproject.org/pipermail/tor-talk/attachments/20090821/4938e233/attachment.pgp>


More information about the tor-talk mailing list