|
You are here |
www.sjoerdlangkemper.nl | ||
| | | | |
attilaolah.eu
|
|
| | | | | This is intended to be a short list of things to check before you go publish awebsite or web app (or really, anything that interacts with a browser). Itstarts with... | |
| | | | |
tom.vg
|
|
| | | | | [AI summary] This article discusses browser-based timing attacks that exploit side-channel information to infer resource sizes and user data, highlighting examples like social network group membership and defense mechanisms such as blocking third-party cookies. | |
| | | | |
timtech.blog
|
|
| | | | | Fun with Cross-Site Request Forgery (CSRF) in a creative Web Timing Attack scenario, highlighting the risks inherent to SameSite=None session cookies. | |
| | | | |
www.ayush.nz
|
|
| | | HTTP security headers: Content-Security-Policy | ||