Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

If a Chrome extension has permissions to an origin, then it can freely make cross-domain requests to it from any page. So if you have an extension using Angular 1.x on every page and then browse to a malicious page, then the page could contain text in the DOM that Angular evals from within the extension. That code could then make an AJAX request to any origin with your cookies, and make requests for your bank info or emails and do things like steal data or change your passwords.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: