Pick of the Week - Nov 10 [Show all picks]
Path Finder 5 - A feature-laden Finder replacement
Submit Hint Search The Forums LinksStatsPollsFAQHeadlinesRSS
12,000 hints and counting!


Click here to return to the 'Preview Quartz Composer (.qtz) files in Safari' hint
The following comments are owned by whomever posted them. This site is not responsible for what they say.
Preview Quartz Composer (.qtz) files in Safari
Authored by: bschoate on Thu, Jan 31 2008 at 8:31AM PST

I tried out a few at ethereal.org. I'm sure there is utility here, but I'm wondering what the security implications are.

In addition to being able to access system information (username, OS / kernel versions -- which could be used to determine additional suitable attacks, perhaps exposed back to the originating server through query parameters to some RSS/XML request), there is a JavaScript control for doing limited scripting operations.

This feature can be turned off by disabling plug-ins from the Security tab in Safari's preferences. Of course, that will disable Flash as well.



[ Reply to This | # ]