I know that there is a fix in Kentico v. 7 for clickjacking attack. But the description of Clickjacking protection in
here is very short and according our company security experts: “It appears that V7 is implementing the X-Frame header, which is a fix for the issue, but not a complete fix. Over the past few years there have been ways around this on certain browsers specifically IE7. A more complete fix would be to utilize style switching which would blank out the framed page by default or un-blank it when the page is unframed.“ According them
this article explains the issue and fix in much more detail.
Could Kentico confirm that issue described in above article has been implemented?
Thank you,
Vlado