[sIFR3-dev] Re: sifr3-dev Digest, Vol 2, Issue 2

Mark Wubben mark at novemberborn.net
Sun Jan 15 21:50:26 GMT 2006


On Jan 15, 2006, at 9:33 PM, M.E. Post wrote:
> Please be aware that using the <object> element triggers all kinds  
> of security mechanisms, especially in edge-of-network devices that  
> check for malicious code. When using the object element you might  
> consider constructing the object tag with javascript to  
> circumnavigate these security measures.
>

How would these devices detect the object tag, and how would  
JavaScript evade them? Obfuscating the `<object ...` text? Or is  
merely creating them through JavaScript good enough?

--
Mark Wubben
http://novemberborn.net/



More information about the sifr3-dev mailing list