Vulnerability Development mailing list archives

Re: Sourceforge.net XSS


From: Juan C Calderon <johnccr () yahoo com>
Date: Mon, 17 Apr 2006 09:55:47 -0500 (CDT)

Hello,

I want to share with you this information I got from
this same list back in April 5th, It is about a virus
created with an XSS at a myspace website (check the
list archives). 

Myspace.com - Intricate Script Injection Vulnerability
advisory
http://www.silent-products.com/advisory4.5.06.txt

The myspace hack story
http://fast.info/myspace/

There are very interesting links at the end of this
paper relating to XSS viruses and their differences
with traditional viruses.
http://www.bindshell.net/papers/xssv.html

hope it is interesting to you, this is just a little
example of what a XSS can do, 

Cheers,
JC

__________________________________________________
Correo Yahoo!
Espacio para todos tus mensajes, antivirus y antispam ¡gratis! 
Regístrate ya - http://correo.espanol.yahoo.com/ 


Current thread: