Ranter
Join devRant
Do all the things like
++ or -- rants, post your own rants, comment on others' rants and build your customized dev avatar
Sign Up
Pipeless API
From the creators of devRant, Pipeless lets you power real-time personalized recommendations and activity feeds using a simple API
Learn More
Comments
-
donuts236728ySorry to ruin this but, this has been there since.... Like forever.
It's a JS HTML5 thing, looks different in different browsers -
@billgates I don't own a Facebook account, cus fuck that. I was on stack overflow and there was a facebook dev there that explained their solution, it was very interesting.
-
Florens4428y@AlgoRythm if you can't risk having people input JavaScript etc you should probably make it server-side.
-
kunashe19688y@tahnik I like how you innocently say "browsing" while you have the terminal open.
Nothing innocent happens when the terminal is open. Its like being in a dark room with someone you fancy. There's going to be lots of poking around going on. -
Speedy278y@Florens even if it is all server side, you can still steal someone's session information, or pop up a nice little fake window letting them know they need to login again, then capture their credentials and simply show them the original site, they won't know any different... Hundreds of different angles of attack here.
-
tahnik387588y@Florens lol man you really think a company like a facebook takes random input from client side javascript?
Related Rants
Just saw this in the console today while browsing facebook
undefined
facebook