Is ext.to dangerous? It caused librewolf to ask for firewall permissions
fedilink
88
Is ext.to dangerous? It caused librewolf to ask for firewall permissions

I’ve never seen any website cause a firewall permission request

@notfromhere@lemmy.one
link
fedilink
English
97
edit-2
9M

Word of caution, if you have been browsing successfully until now, it could be a malicious javascript app or malware loaded from that website that is attempting to scan your network or do other things. In other words if this is a new firewall request above and beyond the standard one librewolf needs to function, proceed with cation.

Nix
creator
link
fedilink
English
39M

That’s what I’m thinking, it happened when i tried to load their streaming player for the first time which historically have pop unders on streaming websites

@waigl@lemmy.world
link
fedilink
English
79M

In theory, that shouldn’t even be possible with JavaScript. There’s such a thing as same-origin policy for that exact reason…

@Cinner@lemmy.world
bot account
link
fedilink
English
69M

Have you really never heard of malware from JavaScript? Buffer overflows and sandbox escapes are almost all JavaScript, still, hasn’t changed in the last decade. Sometimes it’s a random font parser library or something, but almost always it’s JavaScript. And now that browsers are auto-updating and they have fully staffed security teams behind them that get word of a vulnerability being secretly exploited before the general public, most people don’t get hit just because they browsed to a random website. But it’s still possible, and especially likely that a shady torrent site could be hosting malware or get ““hacked””.

@notfromhere@lemmy.one
link
fedilink
English
3
edit-2
9M

Malicious javascript seeks to bypass security controls. It’s one of the reasons NoScript is a thing. It could be a malware loaded from an ad. Biggest reason for adblockers imo.

Check out this link for learning about this stuff.

https://heimdalsecurity.com/blog/javascript-malware-explained/

@waigl@lemmy.world
link
fedilink
English
79M

I’ve read that article. It is complete garbage and doesn’t explain anything at all. It’s just standard cookie cutter fear mongering to sell some random antivirus software.

@notfromhere@lemmy.one
link
fedilink
English
39M

That article is for lay-persons and really an awareness article I surmise. If you’re technical you are likely already aware of the security concerns with jacascript.

@Slovene@feddit.nl
link
fedilink
English
119M

Could you also proceed with anion?

@PeWu@lemmy.ml
link
fedilink
English
59M

+/-

Piracy: ꜱᴀɪʟ ᴛʜᴇ ʜɪɢʜ ꜱᴇᴀꜱ
!piracy@lemmy.dbzer0.com
Create a post
⚓ Dedicated to the discussion of digital piracy, including ethical problems and legal advancements.

Rules • Full Version

1. Posts must be related to the discussion of digital piracy

2. Don’t request invites, trade, sell, or self-promote

3. Don’t request or link to specific pirated titles, including DMs

4. Don’t submit low-quality posts, be entitled, or harass others


Loot, Pillage, & Plunder


💰 Please help cover server costs.

Ko-FiLiberapay


  • 1 user online
  • 219 users / day
  • 509 users / week
  • 927 users / month
  • 4.94K users / 6 months
  • 1 subscriber
  • 3.23K Posts
  • 79K Comments
  • Modlog