|

06-24-2009, 10:46 PM
Ehh, comparing Windows to BlackBerry is irrelevant to me. Many people have Windows which means there are many people that hack at it.
My point simply was about exploitation in general, not necessary mass exploitation like seen with Windows. Also, I am fully aware that I am probably overly paranoid in terms of IT security, but it is my motto that if something can be exploited, it will be exploited. And RIMs code is not flawless, which has been proven by the various PDF exploits in the file conversion service on BlackBerry Enterprise Server.
Now with that said, I suppose one could assume that if JavaScript were a threat, it would be under the "Security" sections of an IT policy and not the "Browser" group. Plus RIM's own documentation on securing a BES and BlackBerrys makes no mention of JavaScript
(na.blackberry.com/eng/deliverables/1835/Protecting%20the%20BlackBerry%20device%20platform% 20against%20malware.pdf)
Would anyone happen to know why the "Disable Javascript" option is there if not for security? Are there other reasons a company would want to disable that feature?
On a personal phone, I enable JavaScript because websites can be a pain without it. But in a corporate environment my paranoia can get the best of me.
I like this discussion because I have been going back and forth over whether or not to allow JS on BB browsers.
|