I asked the question: What's with those Do-Not-Use Javascript People and many people said that Javascript allows security exploits through client-side attacks.
So I need to follow up and understand the how bad the nature of these attacks are:
I'd like to hear some detailed descriptions of actual attacks or damage caused to your computer or your network that was directly or indirectly caused or allowed via Javascript.
Specifically, was there any physical damage caused to your computer or network? Did you lose any data? Was any of your software damaged? If any damage happened, how long did it take to fix, and how much did it cost?
Or was the attack stopped before it did any damage and how was it stopped? How long did this take and how much did it cost?
I don't consider popups an attack. They are simply an annoyance that can easily be blocked without disabling Javascript.
Please only detail attacks that you personally have attended to. I trust your wisdom as programmers, but I don't trust third party stories as much, where the cause might have been something else.