Why are Visualforce pages served from a different domain?

Visualforce pages are served from a different domain to improve security standards and block cross site scripting. Take a look at the highlighted portion in the below Visualforce page:-

sample visualforce page - salesforce interview questions

