Cross script attempts logged to console originating from ET

Discussion in 'Feedback' started by Tsing Tao, Oct 23, 2012.

  1. Tsing Tao

    Tsing Tao

    I don't pretend to be an expert on this stuff. All sorts of warnings pop up, and this is what my noscript is telling me when I click on the forums here:

    Timestamp: 10/23/2012 9:15:07 AM
    Error: The character encoding of the HTML document was not declared. The document will render with garbled text in some browser configurations if the document contains characters from outside the US-ASCII range. The character encoding of the page must to be declared in the document or in the transfer protocol.
    Source File: http://www.elitetrader.com/vb/
    Line: 0

    [NoScript XSS] Sanitized suspicious request. Original URL [http://ad.doubleclick.net/adi/N3941.elitetrader.com/B6178282;sz=130x65;pc=[TPAS_ID];ord=[timestamp]?] requested from [http://www.elitetrader.com/vb/]. Sanitized URL: [http://ad.doubleclick.net/adi/N3941...TPAS_ID ;ord timestamp ?#9278588213790558903].

    [NoScript InjectionChecker] JavaScript Injection in ///adi/N3941.elitetrader.com/B6178282;sz=130x65;pc=[TPAS_ID];ord=[timestamp]?
    (function anonymous() {pc = [TPAS_ID];ord = [timestamp];DUMMY_EXPR;})
     
  2. Joe

    Joe

    Strange, it's possible our webmaster is working on the site; or it's a browser issue on your end. Do you have this same issue if you use a different browser?
     
  3. Baron

    Baron ET Founder

    When you view a page on our site that contains an advertisement, that ad is loaded by a javascript function on our site. If we are hosting the ad on our servers, then it's loaded immediately. If the ad is being served by an advertising agency, then it's loaded by making a request from the agency's web site (which in this case is doubleclick) via another javascript function, hence the "cross script" warning.
     
  4. Tsing Tao

    Tsing Tao

    Got it, thanks. Just weird because it only started happening recently.
     
  5. Download appropriate anti-tracking software and you don't have to worry about that bullshit.

    The CIA won't like it those since they will no longer be able to tell what websites you're visiting.