[1229] in WWW Security List Archive

home help back first fref pref prev next nref lref last post

Re: your mail

daemon@ATHENA.MIT.EDU (Michael Kerr)
Wed Dec 13 13:38:00 1995

Date: Wed, 13 Dec 1995 09:44:42 -0500 (EST)
From: Michael Kerr <mkerr@largnet.uwo.ca>
To: jon madison <jm@circle-slide.indianapolis.sgi.com>
Cc: www-security@ns2.rutgers.edu
In-Reply-To: <199512121712.MAA10220@circle-slide.indianapolis.sgi.com>
Errors-To: owner-www-security@ns2.rutgers.edu

On Tue, 12 Dec 1995, jon madison wrote:

> anyone know more about the security of java/livescript (mocha, whatever)?
> i've already heard of a big flaw that was plugged for the latest 2.0beta
> that would allow a javascript author to save a history of the
> clients travels on the web.  are there any other potential dangers?
> 
> i really don't like the fact that this java script is not something
> that cannot be chosen to be turned off by the browser, can be embedded in
> html pages, etc.

They can.  If you go through the Netscape 2.0b Options menu and look under 
Security | General, it gives you the option to turn Java off.  

Mike.

=============================================================================
Michael Kerr (Webmaster)		  PHONE: (519) 685-8300 x7364
Victoria Hospital 			    FAX: (519) 685-8305
World Wide Web Development Team               http://www.vichosp.london.on.ca


home help back first fref pref prev next nref lref last post