Facebook vulnerable to XSS. Over 70 million users are at risk.

Written by DP

Thursday, 22 May 2008

Mox has submitted a critical cross-site scripting vulnerability affecting Facebook.com - according to Alexa is currently ranked the 7th most used site on the web.


read more...

Barclays XSS vulnerability comes handy for scammers and blackhat hackers

Written by DP

Sunday, 11 May 2008

Bank websites which are vulnerable to cross-site scripting are critically susceptible to frauds and that is a well-documented fact! Strict case management  and monitoring of security vulnerabilities should have prevented 100% of site-specific vulnerabilities. Barclays is one of the largest UK banks and a gold target for scammers hunting the pound notes. In this case, exploiting trust is an easy game to play for phishers and blackhat hackers.


read more...

Hacker Safe or not? Read on, watch the video and vote now!

Written by DP

Monday, 28 April 2008

Russ McRee brought up again his concerns about the Hacker Safe issue with his latest blog post titled "Still not Hacker Safe, roll the video". Me and Kevin are also annoyed with the fact that McAfee's ScanAlert service is, as Russ pointed out, more like fraudulent marketing fluff than a worthy expense for websites.  What do YOU think?


read more...

Google Groups vulnerable to cross-site scripting

Written by DP

Sunday, 27 April 2008

mox has discovered a critical XSS (script insertion) vulnerability in Google Groups.


read more...

Barack Obama's official site hacked

Written by DP

Friday, 18 April 2008

mox has just submitted a critical script insertion vulnerability affecting my.barackobama.com - Barack Obama's official social networking site for his supporters.


read more...

Symantec Internet Security Threat Report (ISTR Volume XIII) highlights

Written by DP

Tuesday, 15 April 2008

Symantec has released on April 8th the most recent and very interesting Internet Security Threat Report (ISTR Volume XIII). Concerning the metric for site-specific XSS vulnerabilities, data is provided by us and is limited to the XSS issues that security researchers submit to the archive.


read more...

1 2 3 4 5 6 7 8 9 10 11 12 13 

 

35984 total xss
11629 special xss
1889 fixed
7829 xss onhold
1517 EW subscribers

Home | News | Articles | Advisories | Submit | Alerts | Links | What is XSS | About | Contact | Some Rights Reserved.