You are viewing a single comment's thread from:

RE: Steemit security check - iframe tricks

in #security3 years ago

It's not an issue on Steemit but may become an issue on other condenser-based sites that take Steemit's frontend and modify it. They can and probably will include iframes and other elements to monetize the portal itself.

Great job testing the parameters. The ecosystem here needs more of that.


Thanks, much appreciated :)

PS. It seems that is vulnerable both to clickjacking and tabnabbing..!

I sent it to the person who runs Thanks.

Coin Marketplace

STEEM 0.50
TRX 0.09
JST 0.068
BTC 49705.42
ETH 4384.25
BNB 601.46
SBD 6.11