Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

you should reconsider this, because it is possible to use javascript to override ctrl+f or other keystrokes. if that site would have displayed the list, and someone used ctrl+f on it, they could have simply used such a technique to add your input to the list to generate positive findings on the fly.

http://arstechnica.com/security/2012/12/how-script-kiddies-c...



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: