• Security
  • By Lucian Constantin
  • August 19th, 2010
Several MSN Websites XSSed

Several MSN Websites XSSed

XSS Attack on Twitter Subdomain Allowed for Complete Session Hijacking

XSS Attack on Twitter Subdomain Allowed for Complete Session Hijacking

Broad authentication cookie domain scope at fault

HTML5 Can Make Older Code Insecure

HTML5 Can Make Older Code Insecure

Critical Facebook XSS serves as proof

Twitter XSS Vulnerability Possibly Exploited by Turkish Hackers

Twitter XSS Vulnerability Possibly Exploited by Turkish Hackers

Promptly fixed by Twitter after its disclosure

Top Facebook Applications Vulnerable to XSS and SQLi

Top Facebook Applications Vulnerable to XSS and SQLi

Highlights the risks of trusting third-party apps

  • Security
  • By Lucian Constantin
  • August 27th, 2009
Fix for Twitter Critical Bug Easily Bypassed

Fix for Twitter Critical Bug Easily Bypassed

Implemented input validation fails miserably

Critical Twitter Bug Discovered

Critical Twitter Bug Discovered

Opens up endless attack possibilities

New Mozilla Technology to Mitigate Cross-Site Scripting

New Mozilla Technology to Mitigate Cross-Site Scripting

The Content Security Policy specification allows websites to tell browsers what to trust

The Website of the International Federation of the Phonographic Industry XSSed

The Website of the International Federation of the Phonographic Industry XSSed

Websites using the Sage Pay payment service provider are also affected, hacker claims

Avira Website XSSed

Avira Website XSSed

Cross-site scripting vulnerabilities affecting several pages of an Avira-controlled website have been disclosed

Kaspersky's Website Open to Cross-Site Scripting

Kaspersky's Website Open to Cross-Site Scripting

XSS vulnerabilities in several pages have been disclosed

  • Security
  • By Lucian Constantin
  • January 5th, 2009
New Critical XSS Flaw Plagues Facebook

New Critical XSS Flaw Plagues Facebook

The password reset page is affected

American Express Fails to Promptly Address XSS Flaw

American Express Fails to Promptly Address XSS Flaw

The vulnerability is fixed after it leaks into the media

Four Critical Facebook XSS Flaws Discovered

Four Critical Facebook XSS Flaws Discovered

Several pages with different functionality are affected

 
Want more? Browse: