Search found 130 matches

by DJ-Leith
Fri Nov 01, 2019 12:02 am
Forum: NoScript Development
Topic: 11.0.5rc2 Endless SPAMMING requests to sync-messages.invalid
Replies: 6
Views: 398

Re: 11.0.5rc2 Endless SPAMMING requests to sync-messages.invalid

After I did 8. There is a third ... https://sync-messages.invalid/moz-extension ... Then, as I open EACH article, that is in the October 2019 list at Arstechnica, e.g. https://arstechnica.com/science/2019/10/neanderthals-were-different-because-their-genes-were-regulated-differently/ I see another .....
by DJ-Leith
Fri Nov 01, 2019 12:00 am
Forum: NoScript Development
Topic: 11.0.5rc2 Endless SPAMMING requests to sync-messages.invalid
Replies: 6
Views: 398

Re: 11.0.5rc2 Endless SPAMMING requests to sync-messages.invalid

I saw that https://noscript.net/getit now has a NoScript 11.0.6rc1 So, I updated the Profile that had NoScript 11.0.5rc3 to 11.0.6rc1 and attempted to reproduce, using my STR - above. I am havig trouble with the forum spam filter - so I'm going to split up this post into smaller chunks. After I did ...
by DJ-Leith
Thu Oct 31, 2019 9:33 pm
Forum: NoScript Development
Topic: 11.0.5rc2 Endless SPAMMING requests to sync-messages.invalid
Replies: 6
Views: 398

Re: 11.0.5rc2 Endless SPAMMING requests to sync-messages.invalid

I have seen the same. I have uMatrix and NoScript (details below). In my case, using the uMatrix logger, it fills up with MANY requests per second. Like this: 20:12:32 behind-the-scene xhr https://sync-messages.invalid/moz-extension://375aab03-55fb-4ac1-a2e2-a2647114f356/?id=34899cc575.837e%2Cabout%...
by DJ-Leith
Sun Dec 31, 2017 4:52 pm
Forum: NoScript General
Topic: noscript.net NoScript Quantum links
Replies: 1
Views: 877

Re: noscript.net NoScript Quantum links

I have seen the same (typo) at AMO. On AMO, at https://addons.mozilla.org/en-US/firefox/addon/noscript/ The link behind the text: "IMPORTANT A Basic NoScript 10 Guide" is also pointing to page two (of the thread which is the Guide). Linking to the start of the 'Guide thread' would be better: https:/...
by DJ-Leith
Mon Dec 19, 2016 7:40 pm
Forum: Web Tech
Topic: The Future of Developing Firefox Add-ons
Replies: 32
Views: 11111

Re: The Future of Developing Firefox Add-ons

A long time ago, on Wed Aug 26, 2015 8:38 pm (above) My native.js approach, which is linked from the WebExtensions FAQ itself and called by the lead developer of the WebExtensions APIs "a good proposal I'd like to start prototyping soon", allows add-ons to do everything the browser (whose ...
by DJ-Leith
Fri Jul 29, 2016 10:06 am
Forum: NoScript Development
Topic: [RESOLVED] RSS feed reader broken in Nightly (49.x and 50.x)
Replies: 15
Views: 3884

Re: RSS feed reader broken in Nightly (49.x and 50.x)

I can confirm what JustAnotherGuy said: Found out the fix. Whitelist "about:feeds" plural form. Not "about:feed". Another test. An Aurora (Fx 49.0a2) Profile with NoScript 2.9.0.12rc1 (20 May 2016) and RequestPolicy Continued 1.0.beta12.2. Also, e10s 'switched off'. The NoScript ...
by DJ-Leith
Wed Jul 27, 2016 8:03 pm
Forum: NoScript Development
Topic: [RESOLVED] RSS feed reader broken in Nightly (49.x and 50.x)
Replies: 15
Views: 3884

Re: RSS feed reader broken in Nightly (49.x and 50.x)

Giorgio, I don't think allowing "about:feed" is the 'whole fix'. On Sunday 2016-07-24 I repeated my 4 tests (see above) after manually adding "about:feed" to the NoScript Whitelist. I had the same results (i.e. Fx 49 and Fx 50 - feed 'still broken'). As all 4 profile ALSO have Re...
by DJ-Leith
Sat Jul 02, 2016 6:28 pm
Forum: NoScript Development
Topic: [RESOLVED] RSS feed reader broken in Nightly (49.x and 50.x)
Replies: 15
Views: 3884

Re: RSS feed reader broken in Nightly (49.x and 50.x)

I think the issues in "NoScript blocking Firefox live bookmarks" https://forums.informaction.com/viewtopic.php?f=7&t=21889 and "RSS feed reader broken in Nightly (49.x and 50.x)" https://forums.informaction.com/viewtopic.php?f=10&t=21969 (this thread) have the same cause....
by DJ-Leith
Sun Mar 13, 2016 6:49 pm
Forum: NoScript Development
Topic: noscript.httpsDefWhitelist;false does not work
Replies: 1
Views: 665

noscript.httpsDefWhitelist;false does not work

Giorgio,

See also thread at mozillaZine
http://forums.mozillazine.org/viewtopic.php?f=23&t=2994461
In particular, this post
http://forums.mozillazine.org/viewtopic.php?p=14540087#p14540087
I'm just linking because paltus could not post here.

DJ-Leith
by DJ-Leith
Tue Sep 29, 2015 9:34 pm
Forum: Security
Topic: Cookies can render secure websites vulnerable
Replies: 7
Views: 2389

Re: Cookies can render secure websites vulnerable

I've now read the Paper "sec15-paper-zheng-updated.pdf", the 2015-08-13 version, from https://www.usenix.org/conference/usenixsecurity15/technical-sessions/presentation/zheng Some comments: * this is a peer reviewed paper, some references were last checked (by the authors) in February 2015...
by DJ-Leith
Sun Sep 27, 2015 9:59 pm
Forum: Security
Topic: Cookies can render secure websites vulnerable
Replies: 7
Views: 2389

Re: Cookies can render secure websites vulnerable

@barbaz Re: 1. Thanks for checking thestack's site. I agree, you don't need to edit the URL. I bailed before the "gzip of the HTML page" was downloaded. Re 2. I've yet to read the "research paper by Zheng, et. al., published at USENIX Security 2015." The abstract does include: &q...
by DJ-Leith
Sun Sep 27, 2015 6:16 pm
Forum: Security
Topic: Cookies can render secure websites vulnerable
Replies: 7
Views: 2389

Re: Cookies can render secure websites vulnerable

Three points: 1. The URL in the first post (thestack dot com). When I clicked the link there seemed to be 'something trying to download'. I used another Profile [which was also using Fx 43.0a2 (2015-09-27)] and used startpage https://startpage.com to search for the URL thestack com security This fou...
by DJ-Leith
Wed Aug 19, 2015 8:38 pm
Forum: NoScript Support
Topic: BBC iplayer wants to run amazon scripts by direct IP address
Replies: 18
Views: 2058

Re: BBC iplayer wants to run amazon scripts by direct IP add

My point there is that the fact it's registered to Amazon doesn't mean much, because Amazon AWS hosts other people's content, meaning *not* Amazon stuff. I agree, barbaz put it better than I did. I've been talking about the likelihood of the BBC hiring [computer] resources from Amazon (for short-te...
by DJ-Leith
Wed Aug 19, 2015 7:47 pm
Forum: NoScript Support
Topic: Temporarily allow by default not working in FFDE 42
Replies: 4
Views: 1360

Re: Temporarily allow by default not working in FFDE 42

Also, worth checking that 'e10s are still disabled'. Some time in the past week or so ... Mozilla 'forced on' the use of e10s AKA Electrolysis AKA "multi-process Firefox" a few days ago in Fx 42.0a2. I have 'turned it off' (again) on all my Fx 42 Profiles because I want to continue to use ...
by DJ-Leith
Tue Aug 18, 2015 10:42 pm
Forum: NoScript Support
Topic: BBC iplayer wants to run amazon scripts by direct IP address
Replies: 18
Views: 2058

Re: BBC iplayer wants to run amazon scripts by direct IP add

2 of 2 3. Now, your initial question: about why the BBC might use 52.x.x.x in some situations and why nobody seems to have noticed the connections to 52.x.x.x I don't know. Here are my thoughts, they include several 'wild speculations' - they are just ideas, could well be totally wrong. 3.1 The BBC ...