>
很猥琐的submitjacking,在群里看到的,
XML/HTML代码
style="position:absolute;left:0px;visibility:hidden;"/>
onMouseUp=document.getElementById('my_submit_button_tres').click()>Fake
link (onmouseup and click)
可参见http://www.planb-security.net/notclickjacking/
相关文章