logoalt Hacker News

Asmod4ntoday at 6:51 AM1 replyview on HN

That’s surely bounded now much it can show, so an attacker can just fill it up till the api throws an error


Replies

asqueellatoday at 11:53 AM

Surely the browser could enforce a limit on a domain, and make sure that the real page you came from (typically the search engine) is prominently displayed.