|
You are here |
greenash.net.au | ||
| | | | |
nv1t.github.io
|
|
| | | | | I've identified a security concern within the self-hosted file sharing tool ProjectSend in the current version r1605. By exploiting a chain of vulnerabilities - including Cross-Site Scripting (XSS), Insecure Direct Object Reference (IDOR), and weaknesses in its change password implementation - an authenticated attacker can force a logged-in user to unknowingly change their account password, by clicking a link. But let me explain the attack in detail. | |
| | | | |
blog.ymirapp.com
|
|
| | | | | We all know how important it is to have a fast WordPress site. If your site is slow, people leave or don't make a purchase. It's also a signal Google uses to do... | |
| | | | |
www.mnot.net
|
|
| | | | | A long, long time ago, I wrote some tests using XmlHttpRequest to figure out how well browser caches behaved, and wrote up the results. | |
| | | | |
simonwillison.net
|
|
| | | Last year OpenAI hired Chrome engineer Darin Fisher, which sparked speculation they might have their own browser in the pipeline. Today it arrived. ChatGPT Atlas is a Mac-only web browser ... | ||