Re: Websockets

Excerpts from Blaine Cook's message of 2012-09-17 20:00:49 +0000:
> I have only one very short thing to add to this conversation: "SPDY".
i've seen SPDY recently mentioned here: http://arstechnica.com/security/2012/09/crime-hijacks-https-sessions/
"[...]Even when a browser is vulnerable, an HTTPS session can only be hijacked when one of those browsers is used to connect to a site that supports SPDY or TLS compression."

Received on Tuesday, 18 September 2012 21:14:18 UTC