Samsung




Samsung Android . CVE-2017-17692 Same Origin Policy (SOP) Samsung 5.4.02.3 .





Same Origin Policy

SOP () same origin ǡ . SOP JavaScript .





SOP Samsung Dhiraj Mishra cookies .


Rapid7 Samsung ( google.com) JavaScript


ʡ JavaScript SOP JavaScript ( ) ( ). ǡ JavaScript ڡ .


cookie (session hijacking) .




Samsung ߿


Mishra ɡ ǡ Galaxy Note 8 . Mishra Tod Beardsley Jeffer Martin Rapid7 Metasploit .


Rapid7 .



SOP Samsung Metasploit Samsung .






secure enough



https://twitter.com/secure_enough

: OnePlus