Quote Originally Posted by kaufen View Post
NoScript is a great extension and will allow you to only enable JS for a trusted site you visit that cannot be viewed properly or will not function properly without it, and then only the scripts necessary to facilitate it, which more often than not is not every script on the page. Flash requires that JavaScript be enabled to function, so not having it run automatically when you land on a page should prevent that type of exploit.
I couldn't have said it better myself.

Wait, I already did...