Hacker News new | ask | show | jobs
by mholt 1011 days ago
We mitigate both DNS rebinding and cross-origin in the admin endpoint by verifying Host and Origin headers -- by default.