Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Re: [WEB SECURITY] countermeasure against attacks through HTML shared files Nov 08 2008 10:00PM
fcorella pomcor com
Hi Bil,

> > My motivation for deleting the file retrieval
> > session record was that the extended hostname is
> > recorded in the browser history. So if the user
> > neglects to log out, and is using a laptop, and
> > the laptop is stolen (even if turned off), the
> > thief can access the file fr...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus