| ▲ | xg15 5 hours ago | ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
Hadn't thought about that additional attack vector those proxies are enabling. In addition to "internet access from residental connection" privileges, the attacker also gets access to loopback on the device that does the proxying... But even then, shouldn't this show the same permission prompt for the user that anything else trying to connect to port 5555 would? | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| ▲ | londons_explore 4 hours ago | parent [-] | ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
Yes, but users are told to allow it if they want to get free coins etc. | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||