yep.Unfortunately, that's no longer the case. You can get nailed from special crafted images, malvertising using ads to deliver payloads to your machine (using javascript), and a host of other nefarious ways to get users to go to a page, click on a link, or execute an attachment. It's not like the old days where you had to actually execute something to get infected.
back in the day i used to have the habit of randomly clicking on white portions of pages out of boredom or impatience. after spending a lot of time cleaning viruses, i learned about invisible gifs/jpegs that can invoke stuff.
my last job involved anti-piracy and i spent most of my time on shady sites. even being hyper-sensitive, i'd often have to reinstall the OS.
them bastages are getting cleverer every day
