📱 2022-08-19 01:25:31 - Paris/France.
Ngokomphandi wezokhuseleko uFelix Krause, iTikTok's-in-app browser kwi-iOS kuthiwa yafaka ikhowudi yeJavaScript kwiiwebhusayithi zangaphandle ezivumela iTikTok ukuba ibeke iliso "onke amagalelo ebhodi yezitshixo kunye nocinezelo" ngelixa umsebenzisi enxibelelana. isetyenziselwa izizathu ezinobungozi.
UKrause uthe isikhangeli seTikTok esingaphakathi kwi-app "sirhuma" kuwo onke amagalelo ekhibhodi ngelixa umsebenzisi enxibelelana newebhusayithi yangaphandle, kubandakanya naziphi na iinkcukacha ezinovakalelo ezifana namagama ayimfihlo kunye namagama ayimfihlo, ulwazi lwekhadi letyala, kunye nako konke ukucofa kwesikrini.
"Ngokwembono yezobugcisa, oku kufana nokufaka i-keylogger kwiiwebhusayithi zeqela lesithathu," uKrause wabhala, ngekhowudi yeJavaScript efakwe yiTikTok. Nangona kunjalo, umphandi wongeze ukuba "ngenxa yokuba i-app ifaka iJavaScript kwiiwebhusayithi zangaphandle ayithethi ukuba insiza yenza nantoni na engalunganga."
Kwingxelo ekwabelwana ngayo ForbesIsithethi seTikTok siyamkele ikhowudi yeJavaScript ekuthethwa ngayo, kodwa yathi isetyenziselwa ukulungisa ingxaki, ukulungisa iingxaki, kunye nokubeka iliso ekusebenzeni ukuqinisekisa "amava afanelekileyo omsebenzisi."
Njengamanye amaqonga, sisebenzisa isikhangeli se-app ukubonelela ngamava afanelekileyo omsebenzisi, kodwa ikhowudi yeJavascript ekuthethwa ngayo isetyenziselwa ukulungisa ingxaki, ukulungisa iingxaki, kunye nokubeka iliso ekusebenzeni kwaloo mava, njengokujonga ukuba iphepha lilayisha ngokukhawuleza kangakanani okanye ukuba iyajinga. ", ibonisa ukukhutshwa kweendaba, ngokutsho Forbes.
UKrause uthe abasebenzisi abafuna ukuzikhusela ekusebenziseni kakubi ikhowudi yeJavaScript kwiziphequluli ezakhelwe ngaphakathi kufuneka batshintshele ekuboniseni ikhonkco elinikiweyo kwisikhangeli esingagqibekanga seqonga ukuba kunokwenzeka, njengeSafari kwi-iPhone kunye ne-iPad.
"Nanini na uvula ikhonkco kuyo nayiphi na i-app, jonga ukuba i-app inikezela ngendlela yokuvula iwebhusayithi eboniswe ngoku kwisikhangeli sakho esingagqibekanga," ubhale uKrause. Ngeli xesha lohlalutyo, yonke i-app ngaphandle kwe-TikTok inike indlela yokwenza oku. »
I-Facebook kunye ne-Instagram zimbini ezinye ii-apps ezifaka ikhowudi yeJavaScript kwiiwebhusayithi zangaphandle ezilayishwe kwiiphequluli zazo ezakhelwe ngaphakathi, zinika ii-apps amandla okulandelela umsebenzi wabasebenzisi, ngokutsho kukaKrause. Kwi-tweet, isithethi sikaFacebook kunye nenkampani yabazali baka-Instagram, uMeta, uthe inkampani "iphuhlise ngabom le khowudi ukuhlonipha ukhetho lwabasebenzisi lwe-App Tracking Transparency (ATT) kumaqonga ethu ".
UKrause uthe wenze isixhobo esilula esivumela nabani na ukuba ajonge ukuba i-browser engaphakathi kwi-app ifaka ikhowudi yeJavaScript xa inikezela ngewebhusayithi. Umphandi uthe abasebenzisi bafuna nje ukuvula i-app abafuna ukuyihlalutya, babelane ngedilesi ye-InAppBrowser.com kwenye indawo kwi-app (njengakumyalezo othe ngqo komnye umntu), cofa ikhonkco ngaphakathi kwesicelo ukuze uyivule ngaphakathi- app browser, kwaye ufunde iinkcukacha zengxelo ebonisiweyo.
I-Apple ayizange iphendule ngokukhawuleza kwisicelo sokuphawula.
SOURCE: Uphonononga Iindaba
Ungalibazisi ukwabelana ngenqaku lethu kwiinethiwekhi zentlalo ukusinika ukomelela okuqinileyo. 🤗