Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
BHSPitMonkey
6 months ago
|
parent
|
context
|
favorite
| on:
TOTP tokens on my wrist with the smartest dumb wat...
You'd really need to block fetch(), websockets, WebRTC, all external images/stylesheets/scripts added to the DOM later, and service workers (to prevent the upload from just being deferred). It's not easy to make sure a web page can't phone home.
tyingq
6 months ago
|
next
[–]
Well, and writing cookies which would upload at a later visit. And probably a dozen other paths.
KTibow
6 months ago
|
prev
[–]
Throttling inside of Devtools should do all of those.
Join us for
AI Startup School
this June 16-17 in San Francisco!
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: