|
|
|
|
|
by winteriscoming
3330 days ago
|
|
Everytime I read about such constructs, it makes me realize, as a regular developer, how complex web application security is and how difficult it is to think about and cover your application against each and every such potential problem. |
|
Array and object globals cannot be overridden now (since 2007) for literals [0] and for ambient authority problem with CORS just check the Origin header.
[0]: https://johnresig.com/blog/re-securing-json/