3 ms·
Plus, FF can preserve the value by allowing cross domain resource caching as long as the request specifies a hash. That negates the super cookie use case, but
by dcposch 6y ago
Plus, FF can preserve the value by allowing cross domain resource caching as long as the request specifies a hash.
That negates the super cookie use case, but still lets you eg. load Jquery from a shared CDN.
You get a free security upgrade to go with it.
- dathinab 6y ago> Plus, FF can preserve the value by allowing cross domain resource caching as long as the request specifies a hash. This does not work as you still can have the same timing attacks the hash only helps wrt. source integrity from CDN's but not with chach based time attacks. Still what should be possible without timing attack channels is to de-duplicate the storage of resources (through not easy and likely not worth it for most use-cases). So you will only lose the most times small speed post on the load time when you open a domain the first time.