denny: (Loser)
[personal profile] denny
Sorry about the 'this is interesting' crap I had in my journal a minute ago (if you clicked on 'this' it posted itself into your journal - a javascript/html forms exploit that's currently amusing the empty-headed). Unfortunately because I've been catching up on 4 days of friends posts, I can't remember where I picked it up from.

Update: in fact, I'm going to follow the example of [livejournal.com profile] zotz and log out of LJ until they fix this exploit. As [livejournal.com profile] deliberateblank points out in this post, this exploit is not constrained to only posting new entries in your journal. It can be used to exploit any LJ form - which includes easily deleting recent posts or even your entire journal. If you're logged out, it won't work - it relies on your system having an existing login session cookie for LJ.

Anyone who posts anything important to a friends-only or filter list before I post here that I'm logged back in, I'm not going to see it. Let me know by email if it's important.

Updated update: actually, I think I can live without JavaScript for the time being (the exploit uses JavaScript). It makes a few sites I use regularly a bit quirky, but nothing too terrible. So, I'm still logged in.
If you don't have an account you can create one now.
HTML doesn't work in the subject.
More info about formatting

If you are unable to use this captcha for any reason, please contact us by email at support@dreamwidth.org

May 2020

S M T W T F S
     12
3456789
10111213141516
17181920212223
2425262728 2930
31      

Most Popular Tags

Style Credit

Expand Cut Tags

No cut tags