Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Yes it is - and it's worthwhile to read bawolffs well written explanation of how exactly it could be exploited. Downplaying security vulnerabilities of this sort is precisely how database leaks happen.


I don't downplay security issues. I just make sure they are actually understood first and that isn't what is going on here at all. What he is describing is not related to CSRF




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: