Hacker News new | ask | show | jobs
by dubcanada 5360 days ago
What a load of garbage

"Does the browser benefit from Windows Operating System features that protect against arbitrary data execution?

Does the browser benefit from Windows Operating System features that randomize the memory layout to make it harder for attackers to find their target?"

I got a checkmark on both those. Yet I'm running Mac.

I also got an "X" on "Does the browser help protect you from websites that are known to distribute socially engineered malware?" yet I'm running Chrome, and little do Microsoft know but Google keeps an entire db of "socially engineered malware" and disallows you to access it.

Good old Microsoft trash browser stats, just like the old IE is the safest browser one.

4 comments

Does the browser benefit from Windows Operating System features that protect against arbitrary data execution? Does the browser benefit from Windows Operating System features that randomize the memory layout to make it harder for attackers to find their target?

If you're on OS X, then yes, both features are available to you. They're called non-executable stack and ASLR. MS did the correct thing by giving you credit for those features.

I'm surprised "does your browser's name start with IE and end with 10 (only valid data in between is \s*)?"

Double awesome points for checkmark for windows-only features on a mac.

I BET once that is discovered the site will browser-sniff.

The "known malware" is an interesting thing. That may be pre-canned inside the browser. I rather my browser have that knowlege, and update a master list hourly, than send info to google to ask "is this ok"... IDK what chrome does so can use some citation on this info.

> Good old Microsoft trash browser stats, just like the old IE is the safest browser one.

In fairness, running IE6 is soon going to be like running Firefox with NoScript, so it might actually be more safe, just like Lynx.

I think the site is about browsers running on Microsoft's OS. Microsoft doesn't need to worry or evaluate browsers on other operating systems. They only want people who are already running windows to evaluate if they are running a safe browser thats it.
Shows that their test is either shit, or misnamed. If their test is shit that means that this is looking for flags, badly. If it is misnamed that means that they are trying to see if they can execute a specific attack, which fails in osx good i guess...