[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Full-disclosure] on xss and its technical merit
- To: "Fredrick Diggle" <fdiggle@xxxxxxxxx>, <full-disclosure@xxxxxxxxxxxxxxxxx>
- Subject: Re: [Full-disclosure] on xss and its technical merit
- From: "Morning Wood" <se_cur_ity@xxxxxxxxxxx>
- Date: Thu, 13 Dec 2007 09:46:56 -0800
4. use xss to IFRAME or otherwise leverage a client exploit
imho this is by far worse than any of the other vectors mentioned
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/