Flash Vulnerabilities

New Flash Vulnerability

I keep saying. Let’s say it one more time. Embedded web browser tech (like flash, javascript, java, etc) IS BAD. It just adds more complexity to what should be a very simple application. More complexity leads to a greater number of points to attack your computer.

This is one more case for users to, by default, not enable Flash on their browser unless viewing a trusted web site. If we reach that day where such practice is common (and the more Flash vulns that get released, the closer we get) then web sites that rely on Flash will be UNUSABLE unless a user trusts the site. But how can the user learn that the site is trustworthy if they can’t even see it?

Stay away from designing your entire web site in Flash. You’re just setting yourself up for some seriously problems in a few years when web browser security finally gets taken seriously.


