On 4/26/22 8:14 AM, Anne van Kesteren wrote:
On Tue, Apr 26, 2022 at 1:59 PM Daisuke Enomoto <[email protected]> wrote:
Explainer
https://docs.google.com/document/d/1pvaMg7J5beBXD7trzHJH_MDULc_wRHLx40MFYAmjknE/edit
This document isn't public.
I just checked the settings, and it should be public now.
This particular technique has been discussed before, but there's a
flaw which wasn't mentioned in this email. The idea assumes that all
end users can access the same websites and also that all end users
visit similar websites. Neither of those is a given and as such end
users that for one reason or another only end up visiting one or two
websites that use a "pervasive payload" could be vulnerable to attack.
--
You received this message because you are subscribed to the Google Groups
"blink-dev" group.
To unsubscribe from this group and stop receiving emails from it, send an email
to [email protected].
To view this discussion on the web visit
https://groups.google.com/a/chromium.org/d/msgid/blink-dev/b55ad061-d351-2def-602c-b857193c944c%40chromium.org.