So a simple XSS exploit on a high volume site could potentially leave
millions of machines frozen displaying some possibly extremely unsavory
message? The targeted site doesn't have to have anything to do with
displaying 3D content. Its not clear whether a GPU response timeout should be part of the spec. but without it a WebGL enabled browser exposes one hell of a vulnerability which the opponents of WebGL, for example those in Redmond, will, in turn, do their best to exploit for their own nefarious purposes. Regards Alan On 06/16/2010 05:18 PM, Gregg Tavares wrote:
|