Quote:
Originally Posted by feldon30
There is a prompt and a mechanism to install PLUGINS. Not code that can read/write to the entire system. ActiveX, by default, runs with ridiculous permissions. If you think that 99% of internet users aren't running the default, then you are a fucking moron. IE7 goes a long way, but it is still built on the same permissive idea.
|
Funny. Must be your system, since on mine with IE5+ ActiveX controls have no permission to go anywhere unless I give it to them. Incidently the same thing as with a Java applet. Now I am sure you mingle up your understanding, but the permission system is not the same as the security holes.
Quote:
|
IE has fundamental design flaws in how its security works. Anyone who disagrees is a fucking moron. That would be you.
|
Well then we are all truly fucked, since the mozilla based browser's fundamental security design is much the same as the IE ones, though their initially implementation was better than the one IE had.
Quote:
|
The fact that you have to PATCH PATCH PATCH to keep IE from executing third party code tells me that it has inherent problems. Firefox does not arbitrarily execute 3rd party code. XSS is between websites, not fucking up your PC.
|
And you don't have to patch FF or any other browsers?
Do me a favor and count the patches of FF and IE over the last two years. You might be surprised at the results. Also any of those 'Memory corruption' exploits in FF can lead to executing of 3rd party code - just like the memory corruption in IE that you talk about.
Quote:
|
That is not code execution. It is an extremely limited javascript flaw which does not reveal any sensitive information. So please shut the fuck up. IE's BMP flaw a while back let a website OWN your computer. That is the nature of most IE flaws, they grant complete access of your computer to a website. That's not something that you can patch your way out of. That's something that has to be designed properly to never happen.
|
IE never had a BMP flaw - Windows had. My point was to show you that when you take some arbritrary 'story' you have read from a forum, probably posted by Ignoranus, and re-port it here, not knowing what you really are writing, then you post FUD. You posted your BMP information as it was proof that Windows was shitty - my link proved you wrong as a multitude of application suffers from this.
I love your argumentation.
Quote:
|
I haven't been impressed or enlightened by anything you've posted. My computer certainly isn't more secure because of it. If there is nothing wrong with IE and Windows, why is Vista such a fundamental rewrite?
|
Well, I don't post FUD and misinformation to impress you, nor to enlighten you. There is no need for me to re-iterate the solutions to these issues, as they have already been posted multiple times over. (But let me do it anyhow: Keep your system up-to-date, run updated anti-virus software, read what messageboxes are saying, press no / cancel if you don't understand and stop browsing suspicious porn sites).
Incidently Vista is not a re-write. I know there is still a lot of code in it that I wrote for XP some years ago.
Again stop getting your information from stupid forums and start reading about the fundamental technologies - I am quite sure that it will enlighten you.