[ad_1]
Technique skirts web security controls
A security researcher has discovered a neat, albeit partially developed, technique to bypass CSP (Content Security Policy) controls using WordPress.
The hack, discovered by security researcher Paulos Yibelo, relies on abusing same origin method execution.
This technique uses JSON padding to call a function. That’s the sort of thing that might allow the compromise of a WordPress account…
More Info