Skip to content

Comment on Cookie Bomb or Let's Break the Internetparent

Comments

I read that post before, maybe I missed, but where he says about DoS possibilities of cookie tossing?

Search for "Does this matter from a security perspective".

Also: take a crack at the CTF we set up. I think (a) you'll do well at it and (b) it'll be fun to watch you. http://microcorruption.com.

Yes, now I see. Weird it stayed not fixed, Public suffix list is not implemented in Chrome.

Anyway, the list is not even close to real solution (just had long discussion with @titanius on twitter why not). So many quirks and use cases of <sub>.domain.

it'll be fun to watch you

uh. hmm, ok.

No pressure there.

You too! You helped us plan the damn thing!

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.