Hacker News new | ask | show | jobs
by timendum 2123 days ago
It only works on mobile (not Firefox) and on Safari.

It's also easy to abuse [1]

[1]: https://blog.redteam.pl/2020/08/stealing-local-files-using-s...

1 comments

This looks more like an implementation flaw than being easy to abuse. The API is still useful after it is patched.