Something something CSP policy application leads to leakage? https://threats.kaspersky.com/en/vulnerability/KLA10846/ …
// @mikewest @arturjanc
-
-
oh sorry, that's been fixed for a few versions.
1 reply 0 retweets 0 likes -
Replying to @durumcrustulum @mikewest
I think it's https://bugs.chromium.org/p/chromium/issues/detail?id=625945 …. It's a nice example of abusing CSP, similar to http://homakov.blogspot.ch/2014/01/using-content-security-policy-for-evil.html …
1 reply 0 retweets 1 like
But luckily it doesn't have any impact on sites actually using CSP, it's just exploiting a platform feature.
10:48 AM - 3 Nov 2016
0 replies
0 retweets
1 like
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.