Re: ActiveX control security

From: N. Miller (nsm_at_blackhole.aosake.net)
Date: 11/10/03


Date: Sun, 9 Nov 2003 18:55:36 -0800

In article <3fae853c.3598169564@news.panaband.com>, dbarnes2@airmail.net
says...
> Is there a way to force the browser to check a control's digital
> signiture/certificate **every time** an ActiveX control is loaded?
>
> The control is checked when it is downloaded just fine, but then after
> it's installed, I'm able to hack the control with impunity and the
> browser never notices.... THIS IS WHAT I NEED TO BE ABLE TO STOP!
>
> One million thanks,

Yep. That is a problem, alright. I suspect that the only solution, short of
a complete overhaul by MS, is to stop relying on "DestructiveX".

-- 
Norman
~Win dain a lotica, En vai tu ri, Si lo ta
~Fin dein a loluca, En dragu a sei lain
~Vi fa-ru les shutai am, En riga-lint


Relevant Pages


Quantcast