block DOM clobbering of window properties (at least in Chrome): `window.__proto__.__proto__=window.__proto__.__proto__.__proto__`
-
-
Replying to @tehjh
Let's add a new and shiny HTTP security header: X-DOM-CLOBBER-PROTECTION: 1 ;-)
1 reply 1 retweet 0 likes
Replying to @slekies
haha, I was thinking about suggesting that :D
6:19 PM - 19 Sep 2016
0 replies
0 retweets
1 like
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.