LWN.net Logo

Mozilla's Content Security Policy

Mozilla's Content Security Policy

Posted Jul 2, 2009 16:16 UTC (Thu) by JoeBuck (subscriber, #2330)
In reply to: Mozilla's Content Security Policy by alankila
Parent article: Mozilla's Content Security Policy

A bank or an online commerce site might still think that the tradeoff is worth it. In a situation where an XSS attack costs either the bank or the customer real money, it could be worth the tradeoff.


(Log in to post comments)

Mozilla's Content Security Policy

Posted Jul 4, 2009 9:08 UTC (Sat) by NAR (subscriber, #1313) [Link]

Why would a bank let HTML input into any forms?

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds