CIA.gov = XSS Hackable

0x0161

BSOD
Messages
441
As the title states:


Look Ma, I'm on CIA.gov

In an age where JavaScript is so ubiquitous that some websites won't even load if you don't enable in your browser, cross-site scripting hacks are everywhere - letting malicious or merely mischievous hacker create links that have some very unintended consequences on websites that are not careful to keep from executing other people's code.

Most are run-of-the-mill and hardly worth writing about, but reader Harry Sintonen writes in with a vulnerability on the CIA's site that THREAT LEVEL can't resist.

Full story can be found here:
http://blog.wired.com/27bstroke6/2008/04/cia-copies-thre.html


Wow I am truly amazed by this. Unbelievable.
 
Back
Top Bottom