As of this writing (2000/11/06), our beloved
mt2k has a bit of JavaScript that logs people off PM when the user visits his homenode.
While annoying, it's basically harmless. It does, however, reveal a potential security risk. How many of you that have been trapped into visiting the esteemed
mt2k's homenode immediately type in your account name and password to log back in, and continue on?
Did you bother to check that you were *really* at
www.perlmonks.org, and not at a spoofed login page? Are you sure
mt2k hasn't been snagging your password, so he can steal your XP, and sell it on eBay (mostly so he can finally afford a real webhosting service...)?
I'm pretty guilty about running around with JavaScript enabled myself, and I too have been bitten by the
mt2k prank. For some reason, I did double check where I wound up, and found it was in a safe place, and not the "mt2k password stealing page".
While I personally would rather not see JavaScript banned from the HTML we can enter (
ar0n used to have some cool stuff on his homenode in JS), this kind of script, and the security risk is the exact sort of thing that I should imagine would cause it to get yanked.
And Dog help the soul that tries to spoof a password page around here, because the retaliation isn't just going to be getting /msg'ed to death, spammed, and nuked, it's going to reporting you to the IRS (if you're American), Interpol for drug trafficking, the UN for warcrimes, and listing you on
mt2k's AOL buddy list.
--Chris
e-mail jcwren
Posts are HTML formatted. Put <p> </p> tags around your paragraphs. Put <code> </code> tags around your code and data!
Titles consisting of a single word are discouraged, and in most cases are disallowed outright.
Read Where should I post X? if you're not absolutely sure you're posting in the right place.
Please read these before you post! —
Posts may use any of the Perl Monks Approved HTML tags:
- a, abbr, b, big, blockquote, br, caption, center, col, colgroup, dd, del, details, div, dl, dt, em, font, h1, h2, h3, h4, h5, h6, hr, i, ins, li, ol, p, pre, readmore, small, span, spoiler, strike, strong, sub, summary, sup, table, tbody, td, tfoot, th, thead, tr, tt, u, ul, wbr
You may need to use entities for some characters, as follows. (Exception: Within code tags, you can put the characters literally.)
| |
For: |
|
Use: |
| & | | & |
| < | | < |
| > | | > |
| [ | | [ |
| ] | | ] |
Link using PerlMonks shortcuts! What shortcuts can I use for linking?
See Writeup Formatting Tips and other pages linked from there for more info.