- From: Boris Zbarsky <bzbarsky@MIT.EDU>
- Date: Wed, 22 Aug 2012 17:14:15 -0700
- To: Mark Watson <watsonm@netflix.com>
- Cc: "<whatwg@lists.whatwg.org>" <whatwg@lists.whatwg.org>, "Tab Atkins Jr." <jackalmage@gmail.com>, Jonas Sicking <jonas@sicking.cc>
On 8/22/12 4:53 PM, Mark Watson wrote: > Also, we've considered "heartbeat" type solutions, which whilst better than nothing are vulnerable to an attack in which the heartbeat messages are blocked. I'd like to understand this better. Would such an attack not also work on XHR? (I realize there are other issues with a heartbeat ping; just wanted to make sure I understand this particular issue properly.) -Boris
Received on Thursday, 23 August 2012 00:14:53 UTC