[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <CALx_OUAP-fvycysquApknNZpBp-4_NVHR6uzUujHahNQ=WtCgw@mail.gmail.com>
Date: Tue, 2 Jun 2015 08:59:30 -0700
From: Michal Zalewski <lcamtuf@...edump.cx>
To: David Leo <david.leo@...sen.co.uk>
Cc: "fulldisclosure@...lists.org" <fulldisclosure@...lists.org>,
bugtraq <bugtraq@...urityfocus.com>
Subject: Re: [FD] Safari Address Spoofing (How We Got It)
> If you change "http://1.2.3.4/" in your Safari code:
> some URL in the real world(for example, dailymail.co.uk).
> Your code won't work(page of target domain is simply loaded).
Sure, but that's pretty obvious.
/mz
_______________________________________________
Sent through the Full Disclosure mailing list
https://nmap.org/mailman/listinfo/fulldisclosure
Web Archives & RSS: http://seclists.org/fulldisclosure/
Powered by blists - more mailing lists