Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
[docs] Add note about the CompressHandler and TLS traffic (#90)
The BEAST and CRIME attacks both let an attacker extract secrets from a page by making guesses about the page's contents, and then measuring how much the response compresses. It is probably worthwhile to warn users about the side effects of compressing responses if they contain secret information. For more information, see http://security.stackexchange.com/a/102015/12208.
- Loading branch information