[theora] <video/> and cross site scripting policy.

Jason Self jason.self at gmail.com
Thu Nov 6 20:53:25 PST 2008


> Consider:   Evilsite.com shows people free nuddies.   It also runs
> invisible javascript that silently makes ever client load a jillion
> videos from poorvictim.com.

I suppose that my point is/was that poorvictim.com already has
resources to address that without bringing up the issues being
discussed here that make <video/> harder to use.


More information about the theora mailing list