
An abuse of trust: Potential security issues with open redirects. [Research Saturday]
CyberWire Daily
00:00
Do You Have a Malware Redirect?
The right way to think about it is, i most simple, is don't take any input. If you can avoid use or imput, avoid it. The second would be to create a static list of what you know you should want to go to. Validate the imput and sure that it's going to the exact right place. And really the last choice is to require the end user, it their browser, to click something to finally get to the last place.
Play episode from 08:47
Transcript


