Let's build a Chrome extension that steals as much data as possible
241–250 of 320 posts
Re: Let's build a Chrome extension that steals as much data as possible
#242Re: Let's build a Chrome extension that steals as much data as possible
#243Re: Let's build a Chrome extension that steals as much data as possible
#244Re: Let's build a Chrome extension that steals as much data as possible
#245Re: Let's build a Chrome extension that steals as much data as possible
#246Earlier quoted context omitted.
> Wait until you see what’s possible with executables! The most important thing is whay you tell the user - Windows says "We don't know where Trojan.exe came from, it could be a virus, are you sure you want to run it?" Chrome says: "You downloaded Trojan.exe from our store, we manage it and check it for viruses. It only asks for harmless permission, install it!" One is warning you, the other is entrapment.
> It only asks for harmless permission, install it! I see it asking for two very scary permissions, two somewhat scary permissions, and one annoying one?
The user isn't giving informed consent, because even if, like you, they are informed about what the worst case is for granting this permission, they have no reasonable knowledge about whether the worst case is likely, even knowing that they've been asked to give permission. The questions are simply too generic for informed consent to be possible. (Mobile apps are getting better here as well, but there's still a long way to go.)
So the permissions aren't actually about managing your risks; they're about managing Google's risks.