foobarlab / UpStage-Video-Hack

UpStage Streaming Hack
http://www.foobarlab.net/
GNU General Public License v2.0
5 stars 1 forks source link

Crossdomain policy seems broken #60

Open foobarlab opened 11 years ago

foobarlab commented 11 years ago

The way the Flash Policy crossdomain is implemented seems broken and not confirming to the recommended way security should be implemented.

Specification for crossdomain policy: http://www.adobe.com/devnet/articles/crossdomain_policy_file_spec.html

See also: https://www.adobe.com/devnet/flashplayer/articles/secure_swf_apps.html https://www.adobe.com/devnet/flashplayer/articles/socket_policy_files.html https://www.adobe.com/devnet/flashplayer/articles/fplayer9-10_security.html