Why does this work?
Why does this work?
Posted Aug 9, 2024 17:32 UTC (Fri) by grawity (subscriber, #80596)In reply to: Why does this work? by hmh
Parent article: 0.0.0.0 Day: Exploiting Localhost APIs From the Browser (Oligo Security)
> Not that it would help much
Is it actually harmful, then, if removing it wouldn't help much?
It's been a long-standing behavior, even if little-known – so if the OS treats it like loopback, programs can guard it like they guard loopback, no special detection needed.