Re: Cross Site Request Forgery vuln in Edge's - patch to 7.0.45 This is exactly why I have an install of Firefox with its homepage set to 'https://my.firewall'. It never goes anywhere else, and the cross-site request forgeries don't work between browsers. It's a nice demonstration of the fact that separation of duties can extend even into individual applications. Really, that's just a happy side-effect of the real reason I have a separate install of Firefox to manage my firewall. You see, Firefox absolutely sucks on Mac OS, but the web interface doesn't work well in Apple's browser. ;-) __________________ Robert Zimmerman |