💾 Archived View for rawtext.club › ~sloum › geminilist › 006889.gmi captured on 2024-03-21 at 16:12:17. Gemini links have been rewritten to link to archived content

View Raw

More Information

⬅️ Previous capture (2021-11-30)

-=-=-=-=-=-=-

<-- back to the mailing list

Malicious Links

gemproj at suckless.anonaddy.com gemproj at suckless.anonaddy.com

Sat Jul 10 16:55:10 BST 2021

- - - - - - - - - - - - - - - - - - - 

Isn't that basically what all applications (that are capable of any statechange) do essentially? Build an application layer on top of a protocol? Ifyou remove Gemini, you got TCP and UDP, and then IP.

If Gemini permits something but doesn't have it out of the box, people willcreate another layer. It's natural I believe 🤷‍♀️

On Sat, 10 Jul 2021, 16:23 ew.gemini 'ew.gemini at nassur.net',<gemproj+ew.gemini=nassur.net at suckless.anonaddy.com> wrote:

This email was sent to gemproj at suckless.anonaddy.com from
ew.gemini at nassur.net and has been forwarded by AnonAddy.
To deactivate this alias copy and paste the url below into your web
browser.
https://app.anonaddy.com/deactivate/84c97fb7-dd72-4688-b653-188215324c2a?signature=e4cd6fabb5144657ed72ac3c56cde019ecccfe366af0b08968536f9080c11eba
-----
Hello,
Chris Brannon <chris at the-brannons.com> writes:
nothien at uber.space writes:
In Gemini, the restriction that information can only be sent to a server
by performing a request is considered a feature. However, this can
backfire by removing the need for user interaction, even when it is
absolutely necessary. Below, I provide an example to show why this
feature, combined with the existence of malicious links, can prevent (or
at least hinder) the sole use of TLS certificates in account-based sites
on Gemini.
I think having destructive operations (create, update, delete) running
over Gemini is probably a mistake to begin with, because it will lead
down the path of trying to build yet another application platform on top
of yet another document delivery system. They tried that trick in the
90s. Sadly it's still with us, and it's called the WWW.
Full ACK!
~ew
--
Keep it simple!

-------------- next part --------------An HTML attachment was scrubbed...URL: <https://lists.orbitalfox.eu/archives/gemini/attachments/20210710/123579a6/attachment-0001.htm>