Up a level |
(2021) Reining in the Web's Inconsistencies with Site Policy.
(2021) Who's Hosting the Block Party? Studying Third-Party Blockage of CSP and SRI.
(2020) PMForce: Systematically Analyzing PostMessage Handlers at Scale.
(2019) ScriptProtect: Mitigating Unsafe Third-Party JavaScript Practices.
(2019) Don’t Trust The Locals: Investigating the Prevalence of Persistent Client-Side Cross-Site Scripting in the Wild.
(2017) How the Web Tangled Itself: Uncovering the History of Client-Side Web (In)Security.