Odd that the javascript: thing described in https://research.securitum.com/security-analysis-of-portal-element/ … was addressed by restricting what can be loaded in <portal> instead of using the (already necessary!) tracking of what origin a javascript: URL came from...
0 replies
0 retweets
6 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.