Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

However, TCP sockets can't publish CORS policies.

In the case of scanning, a CORS denial can still reveal information about the user's internal network, as a CORS denial is a different result than a network timeout or a TCP RST.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: