Secure Coding mailing list archives

Improving the Stanford clickjacking defense.....


From: "Jim Manico" <jim.manico () owasp org>
Date: Sat, 30 Oct 2010 08:19:44 +0530

An old friend of mine and a new but highly active member of the ESAPI-Java
team provided a significant improvement on the Stanford clickjacking defense
methodology that I think is worth blasting out to the community.

 

https://www.codemagi.com/blog/post/194

 

Comments appreciated. 

 

Cheers,

Jim

_______________________________________________
Secure Coding mailing list (SC-L) SC-L () securecoding org
List information, subscriptions, etc - http://krvw.com/mailman/listinfo/sc-l
List charter available at - http://www.securecoding.org/list/charter.php
SC-L is hosted and moderated by KRvW Associates, LLC (http://www.KRvW.com)
as a free, non-commercial service to the software security community.
Follow KRvW Associates on Twitter at: http://twitter.com/KRvW_Associates
_______________________________________________

Current thread: