Facebook's "Reset Password" page suffers major XSS flaw

Written by DP

Sunday, 4 January 2009

DaiMon has once more discovered a new critical cross-site scripting vulnerability which affects the Facebook "Reset Password" page.


read more...

New highly critical Facebook XSS vulnerabilities pose serious privacy risks

Written by DP

Monday, 15 December 2008

Facebook users are susceptible to phishing attacks and ID theft due to some new highly critical cross-site scripting vulnerabilities.


read more...

Google accounts SSL login page suffers from highly critical XSS

Written by DP

Wednesday, 12 November 2008

In this case, the fact that SSL is being used on the login page, does not necessarily mean that the users' login information is secured.


read more...

Google cross domain frame injection vulnerability

Written by DP

Saturday, 11 October 2008

Dan Goodin wrote a good article on TheRegister.co.uk about the titled issue. This is not really a new vulnerability.


read more...

New Orkut XSS worm by Brazilian web security group

Written by DP

Saturday, 4 October 2008

Security researchers Octane[F/X], Rodrigo Lacerda and Klay Gomes were able to hack again Orkut  with their new XSS worm.


read more...

Citibank's critical cross-site scripting vulnerabilities

Written by DP

Saturday, 16 August 2008

DaiMon and mox have discovered two critical XSS flaws on Citibank's website.


read more...

1 2 3 4 5 6 7 8 9 10 11 12 13 

 

35984 total xss
11629 special xss
1889 fixed
7829 xss onhold
1516 EW subscribers

Home | News | Articles | Advisories | Submit | Alerts | Links | What is XSS | About | Contact | Some Rights Reserved.