Hacker News new | ask | show | jobs
by VMtest 1716 days ago
I would appreciate if you can share your knowledge on these vulnerabilities
1 comments

Only advices (at this critical juncture) are to keep your website’s CSP very tight, your APIs authenticated. and protected by MFA especially to supplant PII with website-specific index/sequence numbers. Also to mandate HTML5 nonce element usages on all things referenced.