Hacker News new | ask | show | jobs
by revasm 4572 days ago
The main security benefit of click-to-play plugin schemes is not to question the user about the security of an object, which is unknown in most cases anyway, but to prevent accidental drive-by loading and other annoying (and risky) usage. Clicking an overlay to run a plugin should be as natural as clicking on a video to begin playback.
1 comments

Yes. Drive-by is big deal imo.