How to block all XSS to facebook?
How to block all XSS to facebook?
Can NoScript/Firefox/Linux be configured to always deny XSS to facebook.com? And if so, how?
Mozilla/5.0 (Windows NT 6.1; rv:60.0) Gecko/20100101 Firefox/60.0
- Giorgio Maone
- Site Admin
- Posts: 9454
- Joined: Wed Mar 18, 2009 11:22 pm
- Location: Palermo - Italy
- Contact:
Re: How to block all XSS to facebook?
Generally you can do it by choosing the right option when you get a XSS warning dialog.
Do you get XSS warnings on Facebook?
May I see a screenshot?
Do you get XSS warnings on Facebook?
May I see a screenshot?
Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:67.0) Gecko/20100101 Firefox/67.0
Re: How to block all XSS to facebook?
I am using the TOR fork of the Firefox browser so my selections are not preserved. Since I turn my PC off at night, I have to make the same selections day after day after day. There are others besides facebook but if I knew how to make the facebook selection persistent then I could do it for the others as well.
Mozilla/5.0 (Windows NT 6.1; rv:60.0) Gecko/20100101 Firefox/60.0
Re: How to block all XSS to facebook?
EDIT:
Sorry, I didn't answer your question. I don't get these on facebook because I don't use it.
Sorry, I didn't answer your question. I don't get these on facebook because I don't use it.
Mozilla/5.0 (Windows NT 6.1; rv:60.0) Gecko/20100101 Firefox/60.0
- Giorgio Maone
- Site Admin
- Posts: 9454
- Joined: Wed Mar 18, 2009 11:22 pm
- Location: Palermo - Italy
- Contact:
Re: How to block all XSS to facebook?
If you're using the Tor Browser, open the NoScript Options>Advanced>XSS tab, then:
Some other settings, though, get reset by Tor Browser's own security settings on every restart unless you check Override Tor Browser's Security Level preset.
- check Scan uploads for potential cross-site attacks
- Uncheck sk confirmation for cross-site POST requests which could not be scanned
Some other settings, though, get reset by Tor Browser's own security settings on every restart unless you check Override Tor Browser's Security Level preset.
Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:67.0) Gecko/20100101 Firefox/67.0
Re: How to block all XSS to facebook?
I don't seem to have an XSS tab under advanced.
To see if it was a "Linux thing," I installed the NoScropt add-on in Firefox on Win7:
To see if it was a "Linux thing," I installed the NoScropt add-on in Firefox on Win7:
Mozilla/5.0 (Windows NT 6.1; rv:60.0) Gecko/20100101 Firefox/60.0