Skip to main content
7 events
when toggle format what by license comment
Apr 4, 2019 at 17:20 comment added Bill Michaelson Your last sentence holds the key point I was trying to make: Desktop users control which apps have elevated procedures, just as in the case of rooted Android. As to whether banking web sites are typically XSS vulnerable, I agree that it is less likely than other sites but I can indistinctly recall seeing a number of unnecessary references to third party web sites while using bank services, FWIW.
Apr 4, 2019 at 16:58 comment added Bill Michaelson Thanks, yeah, I suppose my response might induce some head-scratching. I sought to contrast the browser experience on a desktop with that of an Android native app, but you are of course correct in your observation about Firefox. In fact, it is why I sometimes prefer using a browser on Android rather than the custom apps that many service providers try to coerce users to use.
Mar 29, 2019 at 15:31 comment added Luc Almost forgot to welcome you to the site! Your answer is accurate and now that I'm done reading I've upvoted; these were just some things I noticed while reading :).
Mar 29, 2019 at 15:29 comment added Luc "Browsers provide some sand-boxing capabilities" It is not clear from your answer, but mobile browsers are no different in that regard. Firefox on mobile is almost identical to Firefox on desktop. Right now, you answer sounds as though mobile needs that separation because there is no browser sandboxing. I also think you overestimate the "cross-site avenues for potential exploitation": for a ransom site, maybe, but for banking websites? Definitely not the case. Similarly with the rooting, you describe how it works on mobile, but on desktop a user can also give admin rights to any software.
Mar 29, 2019 at 15:15 review Late answers
Mar 29, 2019 at 17:14
Mar 29, 2019 at 15:00 review First posts
Mar 29, 2019 at 18:08
Mar 29, 2019 at 14:59 history answered Bill Michaelson CC BY-SA 4.0