Posted Jun 26, 2008 5:38 UTC (Thu) by jhs (guest, #12429)
Parent article: Leaking browser history
Well, the thing about NoScript is you whitelist only the sites you trust (or at least, sites
which you have to use regularly). After you build up a whitelist for a week or so, the web is
basically usable again.
Having said that, I eventually disabled NoScript for personal use since it is indeed quite a
price to pay. (I still use Flashblock, however.) But the security benefits are real. Just
because it's a bit much for home use doesn't mean it's not a good component of a
defense-in-depth strategy for Government, Military, or some other sensitive situation.
Posted Jul 3, 2008 18:58 UTC (Thu) by aquasync (subscriber, #26654)
[Link]
While I haven't tested it, I'd presume its also possible to harvest this information server
side, solely with CSS, by accessing uniquely named zero sized images in the appropriate
styles.
NoScript does help
Posted Jul 3, 2008 22:02 UTC (Thu) by roc (subscriber, #30627)
[Link]