标签:
Click Jacking: a set of UI Redressing. Make the iframe transparent, the user cannot know what he is clicking. If he happens to click on a button, this button‘s event listener will be triggered and the click jacking succeeds.
UI Redressing countermeasures: Frame buster; HTTP header: X-Frame-Options, CSP; NoScript
UI Redressing attacks on Android devices (blackhat ASIA 14)
标签:
原文地址:http://www.cnblogs.com/CarrieCui/p/4540091.html