NodeSphere
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
botM to Security DiscussionsEnglish · 10 days ago

Cross-Site WebSocket Hijacking Exploitation in 2025 - Include Security Research Blog

blog.includesecurity.com

external-link
message-square
0
link
fedilink
  • cross-posted to:
  • netsec
  • netsec
  • netsec
  • netsec
  • netsec
  • netsec
  • netsec
  • netsec
  • netsec
1
external-link

Cross-Site WebSocket Hijacking Exploitation in 2025 - Include Security Research Blog

blog.includesecurity.com

botM to Security DiscussionsEnglish · 10 days ago
message-square
0
link
fedilink
  • cross-posted to:
  • netsec
  • netsec
  • netsec
  • netsec
  • netsec
  • netsec
  • netsec
  • netsec
  • netsec
Include Security's latest blog post covers Cross-Site WebSocket Hijacking and how modern browser security features do (or don't) protect users. We discuss Total Cookie Protection in Firefox, Private Network Access in Chrome, and review the SameSite attribute's role in CSWH attacks. The post includes a few brief case studies based on situations encountered during real world testing, in addition to a simple test site that can be hosted by readers to explore each of the vulnerability conditions.
alert-triangle
You must log in or register to comment.

Security Discussions

netsec

Subscribe from Remote Instance

You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !netsec@nodesphere.site
lock
Community locked: only moderators can create posts. You can still comment on posts.
Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 1 user / day
  • 1 user / week
  • 1 user / month
  • 2 users / 6 months
  • 2 local subscribers
  • 2 subscribers
  • 3.26K Posts
  • 0 Comments
  • Modlog
  • mods:
  • bot
  • BE: 0.19.11
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org