XSS Attack on Twitter Subdomain Allowed for Complete Session Hijacking

XSS Attack on Twitter Subdomain Allowed for Complete Session Hijacking

Broad authentication cookie domain scope at fault