GZipMiddleware and "BREACH" #2014
Unanswered
amacfie-tc
asked this question in
Q&A
Replies: 0 comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
BREACH is a web vulnerability affecting servers that use compression in responses. According to that link, a mitigation is adding random padding to compressed responses. Does
GZipMiddleware
implement that and if not, should it?Beta Was this translation helpful? Give feedback.
All reactions