Skip to content
Better HN
Top
Best
Ask
Show
New
Jobs
Search
⌘K
Weaponized Google OAuth Triggers Malicious WebSocket
(opens in new tab)
(cside.dev)
9 points
s-mon
1y ago
1 comments
Save
Share
1 comments
1 comments · 1 top-level
top
newest
oldest
unknownhad
1y ago
This looks interesting, This trick is good for hiding the bad code and to bypass the CSP.
j
/
k
navigate · click thread line to collapse