WebSocket attacks

WebSocket attacks

TL;DR: CSWSH, message-level auth flaws, origin policy abuse, smuggling over WS.

Stub — to be filled in.

What it is

TODO

Preconditions / where it applies

TODO

Technique

TODO

Detection and defence

TODO

References