8

怕学生会看HTML源码里的答案,Chrome允许网管禁止查看特定网站源码

 2 years ago
source link: https://blog.est.im/2021/stdin-014
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.
neoserver,ios ssh client

怕学生会看HTML源码里的答案,Chrome允许网管禁止查看特定网站源码

Posted 2021-11-10 | stdin

看到一个奇葩issue

With "view-source" in the URLBlacklist, the view-source:http://[URL] should not be available. With Schools using Google Forms as a testing platform, students are able to use this shortcut to search through the source of the page, and determine the correct answers.

然后 Google Chrome 就真的改了。。。

https://chromium-review.googlesource.com/c/chromium/src/+/3260807

Google 是开发人员太富余了。这种问提都要通过升级浏览器解决?

让人想起了前几天的密苏里州的查看HTML源码刑事诉讼

一名记者偶然发现,密苏里州官方教师资格证查询网站,存在严重的系统安全漏洞。仅仅通过查看网页HTML源代码,就能获取教师的身份证号码信息。于是,他向政府教育部门报告了这个问题。然而两天后,先于漏洞修复到来的,是州长即将对他发起刑事起诉。“政府不会掉以轻心,”州长Mike Parson在周四的新闻发布会上发言,“本届政府绝不姑息任何试图窃取个人信息并会造成威胁的作恶者。”

via


About Joyk


Aggregate valuable and interesting links.
Joyk means Joy of geeK