[sldev] Patch to Address Debit Permission Spoofing

Kamilion kamilion at gmail.com
Tue May 29 01:18:43 PDT 2007


Perhaps firefox's trick of requiring someone to read the dialog?
When firefox is requested to install an XPI from an untrusted source,
it makes the user wait two seconds to accept.

Given that it's relatively unlikely for a mass of debit requests to
build up, perhaps something like this might help people read the
message and be a pain in the ass enough to think about it?

-- Kamilion Schnook


More information about the SLDev mailing list