|
|
|
|
|
by Terr_
534 days ago
|
|
What stops an attacker from abusing the same header? It could be kinda-secure if the header had to have a payload which matched a certain value pre-approved for a time-period. However an insider threat could see the test going on and then launch their own campaign during the validity window. |
|