tag:blogger.com,1999:blog-1386948037384435441.post1221486019482053995..comments2024-03-01T18:53:33.429-08:00Comments on Jeff Muizelaar: WebGL considered harmful?Jeff Muizelaarhttp://www.blogger.com/profile/17483047845050494642noreply@blogger.comBlogger10125tag:blogger.com,1999:blog-1386948037384435441.post-49985701356881276242011-06-17T10:58:15.331-07:002011-06-17T10:58:15.331-07:00@IDoProperAnalysisBeforePressingSend
You did not l...@IDoProperAnalysisBeforePressingSend<br />You did not linked to any security related efforts on behalf of sl/sec MS teams.Przemysław Libhttps://www.blogger.com/profile/17702180780709981763noreply@blogger.comtag:blogger.com,1999:blog-1386948037384435441.post-90685295762447365442011-06-17T01:04:08.313-07:002011-06-17T01:04:08.313-07:00Apparently blogger doesn't do the OpenID callb...Apparently blogger doesn't do the OpenID callback if you have JS off, I'm the snarky Anon aboveAnonymousnoreply@blogger.comtag:blogger.com,1999:blog-1386948037384435441.post-78552140625787665942011-06-17T01:01:23.168-07:002011-06-17T01:01:23.168-07:00IDoProperAnalysisBeforePressingSend,
'The Si...IDoProperAnalysisBeforePressingSend,<br /><br /><br />'The Silverlight team work very closely with the windows security team'<br /><br />Awesome job /s! When do they get around to doing the same work on all the platforms the Web comes to?Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-1386948037384435441.post-4579382520995718822011-06-16T23:26:42.957-07:002011-06-16T23:26:42.957-07:00I believe custom shaders are a part of Adobe's...I believe custom shaders are a part of Adobe's Molehill API for Flash as well. At least according to this blog post: http://blogs.adobe.com/flashplatform/2011/01/digging-more-into-the-molehill-apis.html<br /><br />So I guess all of the big players for 3D on the web are doing it! Shame on them for letting graphics programmers write shaders for web games!JonManateenoreply@blogger.comtag:blogger.com,1999:blog-1386948037384435441.post-13044349595291552952011-06-16T20:31:17.817-07:002011-06-16T20:31:17.817-07:00@duality: it looks like Unity3D allows authors to ...@duality: it looks like Unity3D allows authors to write arbitrary shaders so it seems to have the same problems.Jeff Muizelaarhttps://www.blogger.com/profile/17483047845050494642noreply@blogger.comtag:blogger.com,1999:blog-1386948037384435441.post-28536444058711779972011-06-16T20:17:45.927-07:002011-06-16T20:17:45.927-07:00@IDoProperAnalysisBeforePressingSend:
Can you poin...@IDoProperAnalysisBeforePressingSend:<br />Can you point out what security measures are being taken beyond what WebGL takes? The only thing that I noticed was that it is opt-in on XP. However, it's not obvious that this helps much. How is a user going to make the decision about whether to opt in or not? It seems likely that they'll just click the show me the fancy thing that I want to see button, especially if they are used to clicking that button on other websites that they trust.Jeff Muizelaarhttps://www.blogger.com/profile/17483047845050494642noreply@blogger.comtag:blogger.com,1999:blog-1386948037384435441.post-41901781390208004432011-06-16T17:58:21.576-07:002011-06-16T17:58:21.576-07:00@ IDoProperAnalysisBeforePressingSend:
That doesn...@ IDoProperAnalysisBeforePressingSend:<br /><br />That doesn't set Silverlight apart from WebGL. The WebGL WG includes the major GPU vendors (regarding OS vendors, Apple and Google are on board), and together with browser vendors they spec and implement robustness improvements in graphics drivers, which are the part of an OS that matters the most here.Benoit Jacobhttp://blog.mozilla.com/bjacob/noreply@blogger.comtag:blogger.com,1999:blog-1386948037384435441.post-55338696447305868182011-06-16T17:24:04.097-07:002011-06-16T17:24:04.097-07:00Have you even analysed the 3DApi stack within Silv...Have you even analysed the 3DApi stack within Silverlight before you did your analysis (cut-paste words) <br /><br />The Silverlight team work very closely with the windows security team to ensure that Silverlight is meets rigourous security benchmarks.<br /><br />The following MSDN article explains just some of the security measures taken in Silverlight 5 Beta 3DApi.. And it is only a beta, more measures are being put in place!<br /><br /><br />http://msdn.microsoft.com/en-us/library/gg197424(v=XNAGameStudio.35).aspxIDoProperAnalysisBeforePressingSendhttp://YouNeedToGetYourFactsStrait.comnoreply@blogger.comtag:blogger.com,1999:blog-1386948037384435441.post-81457472228067351432011-06-16T16:50:54.802-07:002011-06-16T16:50:54.802-07:00Can you also discuss concerns with Unity3D or have...Can you also discuss concerns with Unity3D or have they somehow mitigated these concerns?dualityhttps://www.blogger.com/profile/07596486716982579729noreply@blogger.comtag:blogger.com,1999:blog-1386948037384435441.post-58881979555125730092011-06-16T15:13:52.089-07:002011-06-16T15:13:52.089-07:00Touché! :-DTouché! :-DEdnoreply@blogger.com