type__error’s avatartype__error’s Twitter Archive—№ 9,384

    1. One way of protecting yourself from things like this is to send a Content-Security-Policy header with every response. This controls what scripts are allowed to execute on your page. Conveniently I have a blog post: localghost.dev/2020/05/defending-yourself-against-cross-site-scripting-attacks-with-content-security-policy/ zofrex/1319286955314614275
      OpenGraph image for localghost.dev/2020/05/defending-yourself-against-cross-site-scripting-attacks-with-content-security-policy/
  1. …in reply to @type__error
    hashtag content marketing