View Single Post
  #3  
Old 10-03-2010, 06:00 PM
Stephen Stephen is offline
Boom!
Stephen's Avatar
Join Date: May 2004
Location: San Francisco
Posts: 10,410
Stephen has much to be proud ofStephen has much to be proud ofStephen has much to be proud ofStephen has much to be proud ofStephen has much to be proud ofStephen has much to be proud of
Quote:
Originally Posted by fowlplay4 View Post
The damage is done far before it will even get reported, a whole server could be repeatedly goatsed (or other shock-site/exploit) hours before anyone can do anything about it.
I cannot agree. Tricking a user and forcing a user into visiting a shock site (or other illicit material) have the same result - the user is exposed to undesirable content. The only way to prevent that entirely is through strict administrative procedure. We can all agree that the users hold no responsibility if they are exposed to undesirable content via game client... that in itself is a strong argument against a openURL prompt. Perhaps Graal Online needs a better system report and respond to abuse?

In the mean time it may be a good idea to filter openURL requests from the client.
__________________
Reply With Quote