Independent security researcher Rafay Baloch recently disclosed a serious vulnerability in Android’s built-in browser. The vulnerability allows the same origin policy of the browser to be violated. This could allow a dangerous universal cross-site scripting (UXSS) attack to take place. An attacker could potentially use an IFRAME to load a legitimate site for which the […]
Post from: Trendlabs Security Intelligence Blog – by Trend Micro
Same Origin Policy Bypass Vulnerability Has Wider Reach Than Thought