Slashdot Mirror


Google's Browser Interception Plugin For Chrome

An anonymous reader writes "Google has released a passive in-the-browser reconnaissance plugin, called the 'DOM Snitch'. By intercepting JavaScript calls to the browser infrastructure, it detects common cross-site scripting, mixed content and insecure DOM changes. The plugin displays the DOM modifications in real time so developers don't have to pause the application to run an outside debugger. It exports traces for easier collaboration and analysis."

1 of 26 comments (clear)

  1. Only 18 comments? by Qzukk · · Score: 3, Interesting

    Everyone who uses chrome probably did what I did and ran out to install the extension to see what happens on slashdot.

    Answer: it breaks the fuck out of slashdot whether it's in active, passive, or standby mode, pretty much all of the 2.0ish stuff like replies and opening comments ceases to work (everything opens a new page).

    Uninstalled it and now slashdot is back to the normal level of brokenness. Apparently whatever it does to "inject" all this stuff needs just a little more work to make sure it doesn't disturb the javascript that is already there.

    --
    If I have been able to see further than others, it is because I bought a pair of binoculars.