Re: Applescript & HTML Again...
Re: Applescript & HTML Again...
- Subject: Re: Applescript & HTML Again...
- From: "John C. Welch" <email@hidden>
- Date: Tue, 30 Mar 2004 13:30:19 -0600
On 3/30/04 1:12 PM, "John C. Welch" <email@hidden> wrote:
>
So, it would seem that rather than hiding behind a different hard drive and
>
protocol name, the only protection missing link has, *as currently
>
implemented* is the protocol name.
Another idea that would help with ML security would be to have it only work
when activated from a page accessed via the " file:///" protocol instead of
"
http://" or anything else.
That would greatly limit the ability of a remote web site to use ML to do
harm, and, along with requiring a manually entered application whitelist,
make it quite uselsess as a hacker tool.
john
--
"These things we do that others may live."
USAF Pararescue
_______________________________________________
applescript-users mailing list | email@hidden
Help/Unsubscribe/Archives:
http://www.lists.apple.com/mailman/listinfo/applescript-users
Do not post admin requests to the list. They will be ignored.