[whatwg] Dealing with UI redress vulnerabilities inherent to the current web

Michal Zalewski wrote:

> 3) Add an on-by-default mechanism that prevents UI actions to be taken
>     when a document tries to obstruct portions of a non-same-origin  
> frame.

Something like focus-follows-mouse plus autoraise for IFRAMEs might  
work.

-- 
Toby A Inkster
<mailto:mail at tobyinkster.co.uk>
<http://tobyinkster.co.uk>

Received on Thursday, 25 September 2008 12:33:45 UTC