back to article Holey? COWL! Boffins build boxes to hold sketchy JavaScript libs

Researchers have developed what they say is a new web privacy system for Google Chrome and Mozilla Firefox: we're told it blocks dodgy JavaScript code from funneling sensitive information to crooks. The Confinement with Origin Web Labels (COWL) system tries to protect websites that rely on JavaScript libraries written by third …

  1. tony2heads

    "Perhaps developers simply shouldn't use unaudited or sketchy-sourced code in production"

    I'll go with that one please

    1. Robert Helpmann??
      Childcatcher

      Re: "Perhaps developers simply shouldn't use unaudited or sketchy-sourced code in production"

      Yes, but that would mean investing time in auditing the code. In a production environment, the point of using third party tools is to save time, so spending that time is going to get push-back from management if it even occurs to the devs to do so in the first place. I fully agree with the sentiment, but it is going to be a hard sell in order to get this added into a coder's SOP.

  2. sabroni Silver badge

    relying on JavaScript libraries written by third parties

    doesn't mean you have to trust third parties to host those libraries.

  3. Michael Wojcik Silver badge

    jQuery

    jQuery – the official site for which was just infiltrated by miscreants

    To be fair, the official jQuery site was created by miscreants.

    At the very least, they're guilty of supporting jQuery.

    1. Anonymous Coward
      Anonymous Coward

      Re: jQuery

      "At the very least, they're guilty of supporting jQuery."

      And what's the appropriate punishment? Chain them together? Painfully orient their objects? Extend them? Lock them in their own library and reassign the keys...?

      1. ecofeco Silver badge

        Re: jQuery

        And what's the appropriate punishment? Chain them together? Painfully orient their objects? Extend them? Lock them in their own library and reassign the keys...?"

        POTD!

        Upvoted.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon

Other stories you might like