Slashdot Mirror


Flash Vulnerabilities Affect Thousands of Sites

An anonymous reader sends us to The Register for this security news. The problem is compounded by the fact that some of the most popular Web development tools for generating SWF produce files containing the recently disclosed vulnerabilities. "Researchers from Google have documented serious vulnerabilities in Adobe Flash content which leave thousands of websites susceptible to attacks that steal the personal details of visitors. A web search reveals more than 500,000 vulnerable applets on major corporate, government and media sites. Removing the vulnerable content will require combing through website directories for SWF files and then testing them one by one. Updates in the Adobe software that renders SWF files in browsers are also likely, but they probably wouldn't quell the threat completely... No patch in sight from Adobe, that's the price to pay for depending on proprietary solutions."

4 of 214 comments (clear)

  1. Re:Preference by Anonymous Coward · · Score: 1, Funny

    And why do we give a fuck?

    As if you have the same flexibility with HTML, CSS and PHP. Oh, wait. That doesn't matter, as long as you jump on the anti-Flash bandwaggon, logic doesn't need to be present.

    Suck my flashy dick.

    Posting as AC 'cause the mods can't handle the truth.

  2. Is slashdot evil? by DAldredge · · Score: 3, Funny

    /. delives proprietary flash content to us via a proprietary ad network. Does that make /. evil too?

  3. Re:Even Lynx had problems, so.... by Tumbleweed · · Score: 2, Funny

    So, should we go back to using
            echo -e "GET / HTTP/1.1\nHost: slashdot.org\n\n" | netcat slashdot.org 80

    Kinda sucks!


    Eff that. Gopher's still going strong!

  4. Re:Preference by Anonymous Coward · · Score: 4, Funny

    Keep your voice down...

    You must be new here... this debate isn't about whether or not the suggested alternatives to Flash are supported or practicable.

    It's more to do with people having look at reality and coming to the conclusion that they just don't like or believe certain aspects of it.

    Call it a selective disregard for the facts or utter stupidity if you will, but its kinda groovy...

    I think that the audio and video functionality of Flash/Flex can and will be replaced by chaz haskins' svg wondershow plugin.

    See it's easy! get into it.