Update README.MD
This commit is contained in:
parent
5a29b745ad
commit
c89dac4d05
1 changed files with 3 additions and 2 deletions
|
|
@ -7,8 +7,9 @@
|
|||
## Description:
|
||||
The type of information that could be disclosed if an attacker successfully exploited this vulnerability is data inside the targeted website like IDs, tokens, nonces, cookies, IP, User-Agent, and other sensitive information.
|
||||
The user would have to click on a specially crafted URL to be compromised by the attacker.
|
||||
In this example, the attacker use `STRIDE Threat Modeling` to spoof the victim to click on his website and done.
|
||||
This will be hard to detect.
|
||||
In this example, the attacker uses `STRIDE Threat Modeling` to spoof the victim to click on his website and done.
|
||||
This is the general spoofing vulnerability and does not cover only EDGE, all browsers can be manipulated this way
|
||||
on every OS. This will be hard to detect.
|
||||
|
||||
## Conclusion:
|
||||
Please be careful, for suspicious sites or be careful who sending you an link to open!
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue