XSS on Fortinet's Login Page Let Attackers Log Passwords in Cleartext

XSS on Fortinet's Login Page Let Attackers Log Passwords in Cleartext

Just the bug nation-state actors were looking for

WordPress Websites Targeted by Credential Leak Campaign

WordPress Websites Targeted by Credential Leak Campaign

Users are unaware of the credential theft

Mozilla Expert Describes New Phishing Method

Mozilla Expert Describes New Phishing Method

Dubs the attack "tabnabbing"

  • Security
  • By Lucian Constantin
  • December 4th, 2009
PayPal Classifies Its Own Email as Phishing Attempt

PayPal Classifies Its Own Email as Phishing Attempt

Outlines poor security practices

Gmail Login Gets CSRF Protection

Gmail Login Gets CSRF Protection

A feature that's been missing for a long time

  • Security
  • By Lucian Constantin
  • January 5th, 2009
Phishing Campaigns Spotted on Twitter

Phishing Campaigns Spotted on Twitter

Attempting to steal login credentials and/or phone numbers