Re: [CentOS] Why the Internet is so insecure

2016-11-30 Thread Phil Wyett
On Wed, 2016-11-30 at 02:33 -0800, Alice Wonder wrote: > https://github.com/whatwg/html/issues/2119 > > Major flaw in how the specification for window.opener() works resulting > in a major phishing vulnerability that is cake to pull off. > > The right solution isn't considered because it would b

[CentOS] Why the Internet is so insecure

2016-11-30 Thread Alice Wonder
https://github.com/whatwg/html/issues/2119 Major flaw in how the specification for window.opener() works resulting in a major phishing vulnerability that is cake to pull off. The right solution isn't considered because it would break compatibility with the few number sites that depend upon th