|
in:
|
|
| Forums > IC Magazine > Website Support > ICMag, SB and Javascript | ||
| ICMag, SB and Javascript | Thread Tools |
|
|
#1 |
|
Member
Join Date: Oct 2006
Posts: 59
![]() |
ICMag, SB and Javascript
I searched but could not find anything on this.
As much as everyone speaks about security and anonimity here, I am somewhat shocked that no one has posted about the use of Javascript within these sites and how it can circumvent the security posters have taken. Javascript can make calls that bypass proxy services and reveal your true IP. I realize that the operators here have made it known that all IPs are stored only momenterily during login, but what about SB? I ask, because in order to change currencies you have to have Javascript enabled. I see that alone as an overlooked security flaw for the aforementioned reason. I have not attempted to order online, but what about the order process and what happens to sensitive data once the transaction is complete and the session terminated? |
|
|
|
|
|
#2 |
|
Member
Join Date: Oct 2006
Posts: 59
![]() |
Wow. I figured this would have a response already.
Perhaps I should re-post this in the Security forum? |
|
|
|
|
|
#3 |
|
Retired
![]() Join Date: Apr 2004
Location: sowing the seeds of love
Posts: 5,952
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
perhaps you should check your facts
__________________
Fly On My Sweet Angel Williamina Queen, 26.5.43 - 22.3.06 shine on 11/07/06 "Like Rick, I don't find it easy to express my feelings in words, but I loved him and will miss him enormously".David Gilmour Monday 15th September 2008
Gypsy is finally Free |
|
|
|
|
|
#4 |
|
Guest
Posts: n/a
|
|
|
|
|
|
#5 | |
|
Member
Join Date: Oct 2006
Posts: 59
![]() |
Quote:
I use TOR and have read specifically that Javascript calls can return your real IP address. Last edited by TheGreenMachine; 10-22-2006 at 02:15 AM.. |
|
|
|
|
|
|
#6 |
|
i has a soldering iron
Join Date: Jun 2006
Location: mars
Posts: 76
![]() |
Java can do what you are describing, but Javascript on a trustworthy site is little to worry about. the Tor docs cover this concern. if you are using Firefox you might want to get the NoScript extension, very handy for whitelisting which sites to allow javascript on. hope it helps.
__________________
LED is the lighting future |
|
|
|
|
|
#7 | |
|
Member
Join Date: Oct 2006
Posts: 59
![]() |
Quote:
After what happened with OG (I was away when it all went down), I am more cautious than ever. TOR has proven to solve half the issue, JS was the other. You have at least laid my concerns with these two particular sites to rest as I have heard pretty much nothing but good over the years about GN and the way he runs his business. I am assuming Sbay is kosher as well? Thanks, ballast. |
|
|
|
|
|
|
#8 |
|
i has a soldering iron
Join Date: Jun 2006
Location: mars
Posts: 76
![]() |
yeah TheGreenMachine, Sbay excellent too from all i've heard. had the same sorts of questions when i registered here, after a while you learn whats what. check the security forum, lotsa good stuff in there.
the thing about javascript is the source code is viewable in the browser, so if there were anything funny going on here we'd hear about it. grow safe
__________________
LED is the lighting future Last edited by ballast; 10-24-2006 at 11:34 AM.. |
|
|
|
|
|
#9 | |
|
Retired
![]() Join Date: Apr 2004
Location: sowing the seeds of love
Posts: 5,952
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
Quote:
personally I always recomend firefox if your worried, set to max security
__________________
Fly On My Sweet Angel Williamina Queen, 26.5.43 - 22.3.06 shine on 11/07/06 "Like Rick, I don't find it easy to express my feelings in words, but I loved him and will miss him enormously".David Gilmour Monday 15th September 2008
Gypsy is finally Free |
|
|
|
|
|
|
#10 | |
|
i has a soldering iron
Join Date: Jun 2006
Location: mars
Posts: 76
![]() |
Quote:
__________________
LED is the lighting future |
|
|
|
|
|
|
|
|