Page 1 of 1
Security Test Browserscope
Posted: Sat Apr 12, 2014 4:45 pm
by sampei.nihira
http://www.browserscope.org/security/test
My test:
Windows XP Home SP3
Firefox 28 + Noscript
score 16/17 (fail Origin header)
You can get 17/17 ?
Sorry my bad English.
Re: Security Test Browserscope
Posted: Sat Apr 12, 2014 8:47 pm
by Giorgio Maone
You're basically asking NoScript of fix/work-around
Mozilla's bug 446344, which is mostly a cosmetic one since adopting the whole CORS is much more reliable/robust than relying on the Origin header being sent for any request (and also maybe less privacy disputable).
Answer is: maybe, I must consider all the implications (especially the privacy-related ones).
Re: Security Test Browserscope
Posted: Sun Apr 13, 2014 5:07 pm
by sampei.nihira
Giorgio Maone wrote:You're basically asking NoScript of fix/work-around
Mozilla's bug 446344, which is mostly a cosmetic one since adopting the whole CORS is much more reliable/robust than relying on the Origin header being sent for any request (and also maybe less privacy disputable).
Answer is: maybe, I must consider all the implications (especially the privacy-related ones).
TH Giorgio.
It would be a very interesting thing.
Good Luck!!
