The Problem with Widgets Part Deux
On Saturday, I posted a bit about the problem with Safari's auto-installation of Widgets. Today, Dori Smith of Backup Brain has written an article for MacCentral on the topic, called Dashboard Widget (In)Security that offers a more detailed view of the situation along with a good dose of what to do and what not to do. First thing, don't panic. Second, empower yourself with knowledge.
Make sure you check it out.
Share
Categories
On Saturday, I posted a bit about the problem with Safari's auto-installation of Widgets. Today, Dori Smith of Backup Brain has written an...
Add a Comment
Apple needs to spread the "are you sure you want to run this widget" popup across all widgets. And create a Widget Manager-esqe app to remove/move/play with widgets. This isnt as big of a security flaw as people are creating it. This is Apple Land, people update their OS's unlike Windows Land. Apple will fix this problem in 10.4.1 or atleast a Security Patch soon. 10.4.1 is already seeded to dev's, although i haven't heard much of a change list.
May 10 2005 at 1:04 AM Report abuse Permalink rate up rate down Replydoes this happen only if you run sfari, or does this happen if you run a 3rd party browser like firefox? i havent installed tiger yet cause i wanted to see what security issues popped up first...
May 09 2005 at 11:55 PM Report abuse Permalink rate up rate down Replythanks for the heads up on this one, you guys... just another reason i love tuaw
May 09 2005 at 11:42 PM Report abuse Permalink rate up rate down Replywhy to the widgets take up so much ram? a 500k widget shouldn't need 10 to 15mb of ram
May 09 2005 at 8:52 PM Report abuse Permalink rate up rate down ReplyI think that everyone is blowing this widget "insecurity" business ridiculously out of proportion. Widgets are mini-applications, and they should be treated as such. It's no secret that an errant application can easily be destructive; this is well-known. Any self-respecting user will not download an application without knowing what it does first, which is exactly the same precautions they should apply to widgets. As noted in this article, even if a widget is downloaded without your permission, it cannot do anything unless the user intentionally activates it.
May 09 2005 at 8:46 PM Report abuse Permalink rate up rate down ReplyHot Apps on TUAW
Deals of the Day
more deals- Used Apple iMac 17" Core 2 Duo 1.83GHz for $430 + $28 s&h
- Lounge Deluxe Stand for iPhone / iPod touch for $28 + $8 s&h
- Brookstone Surround-Sound Earbuds for $14 + $7 s&h
- Refurbished Skullcandy Tokidoki Smokin' Buds Mic'd Headset for $5 + $2 s&h
- Stitchway Backup Battery for iPod / iPhone for $5 + free shipping
- Used Apple MacBook Pro 2.4GHz 15" LED Laptop for $1,030 + $29 s&h
Software Updates
more updates- EFI Firmware Update brings Lion Internet Recovery to 2010-model Macs
- OS X Lion 10.7.3 released with Safari 5.1.3, Wi-Fi bug fix
- Aperture updated to 3.2.2, addresses Photo Stream issue
- Apple updates Keynote to address Lion issues
- Google Search app gets new look on iPad
- Apple releases Apple TV Software Update 4.4.3



5 Comments