iframe - Security implications of allowing framing? -


I know that when I try to reach the StackVwarflow via the reddit toolbar, I get a popup that "For security reasons, not allowed". See for an example.

What are the safety reasons for actually?

I know that this may be a question for Meta, but this is actually more of a general web security question, so I'm giving it a shot.

Thank you. / P>

You can check.

Edit:

OK, so the cited from the link The problem with framing is that it is the first The move is how is it done? You can have a clearly harmless page, which is at the top of the link which has a transparent frame, which was careful when you click on the link on the page, then you link the page with the frame Or click on the button. Although you can not see the frame (due to complete transparency), your clicks will be caught by this, the result is that while the user thinks that he is just navigating to the random page, he can actually change his Twitter status, Sending email, doing something on Facebook, click on a paypal and click on "Yes, donate all this" button. .. the imagination is limited.


Comments

Popular posts from this blog

oracle - The fastest way to check if some records in a database table? -

php - multilevel menu with multilevel array -

jQuery UI: Datepicker month format -