XS-Leaks chez Meta - 4 failles pour vous identifier
https://fed.brid.gy/r/https://korben.info/cross-site-leaks-facebook-meta-xs-leaks-failles.html
XS-Leaks chez Meta - 4 failles pour vous identifier
https://fed.brid.gy/r/https://korben.info/cross-site-leaks-facebook-meta-xs-leaks-failles.html
Thought that we forgot about #xsleaks? Nothing could be more wrong! Today we launch an improved XS-Leaks wiki:
The project is open-sourced and everyone is welcome to contribute. The code can be found here http://github.com/xsleaks/wiki.
π¦π: https://twitter.com/terjanq/status/1334996951104942082
XS-Leaks Wiki # Overview # Cross-site leaks (aka XS-Leaks, XSLeaks) are a class of vulnerabilities derived from side-channels 1 built into the web platform. They take advantage of the webβs core principle of composability, which allows websites to interact with each other, and abuse legitimate mechanisms 2 to infer information about the user. One way of looking at XS-Leaks is to highlight their similarity with cross-site request forgery (CSRF 3) techniques, with the main difference being that instead of allowing other websites to perform actions on behalf of a user, XS-Leaks can be used to infer information about a user.