3 ms·
But this is a response header, so server shoud respond and that is the goal of attack. Browser doesn't send any request headers saying that site is opened in th
by sunflowerdeath 12y ago
But this is a response header, so server shoud respond and that is the goal of attack.
Browser doesn't send any request headers saying that site is opened in the iframe.
- sanqui 12y agoSure, but at least the browser won't render the page, so it won't download the additional content like images and scripts. It's partial mitigation.