Mailing the story:

Avoid Common Pitfalls in Greasemonkey: How the History of Greasemonkey Security Affects You Now

  • O'Reilly Network; By Mark Pilgrim (Posted by on CST)
  • Story Type: Tutorial; Groups: Mozilla
Once upon a time, there was a security hole. (This is not your standard fairy tale. Stay with me.) Greasemonkey's architecture has changed substantially since it was first written. Version 0.3, the first version to gain wide popularity, had a fundamental security flaw: it trusted the remote page too much when it injected and executed user scripts.
What is your name?

What is your E-Mail address?

What is the email address of the recipient?

Add a special note from yourself?