Skip to content
Web Security

What is Clickjacking & X-Frame-Options?

A UI-redress attack that layers an invisible frame over a legitimate page to hijack clicks. The frame-ancestors CSP directive or X-Frame-Options DENY keeps sensitive pages unframeable.

Browse all Web Security terms →