なりたい人間人間なりたい
14:51 · 2025年12月26日 · 周五
Cross-Site ETag Length Leak
via
XS-Spin Blog Blog
Telegraph
Cross-Site ETag Length Leak
I recently discovered a new client-side attack technique that leaks the length of an ETag from a cross-site page. This can be used as an XS-Leak oracle and I created a CTF challenge as a proof of concept. impossible-leak is one of the challenges I authored…
Home
Powered by
BroadcastChannel
&
Sepia