This is my little corner of the Internet where I write about Web security and privacy, and share research articles and interviews. I hope you find something useful!
Pushing the boundaries of Web security and privacy.
Under the Radar
Although the web attack technique DOM Clobbering has been known since 2010, it has received far too little attention.
It's All About Who's Asking?
While most security researchers think of CSRF as a server-side problem, Client-Side CSRF also exists.
Are We on the Same Site?
This is a wider card with supporting text below as a natural lead-in to additional content. This content is a little bit longer.
See the code and raw content.