Latest Posts
Popular Posts
Main Menu
Home
Travel and Tourism
Media & Entertainment
Telecom & IT
Business and Finance
Sports & Games
Food & Recipe
Health & Medicine
Automobiles
Real Estate
Electronics & Appliances
Forum
Gallery
Casino Games
Business Directory
Festival Special 2011
General Blogs
Sudoku
Free Games
Search

Latest Forum Posts
Topics
How to Fall Asleep Instantly
by sandy
Top 5 Benefits of exercise
by ElizabethScott
Once you pay for the head Kandy exte...
by laowantong
Amy's hair style
by laowantong
What not to put in the fridge
by sandy
Tripod (mainly head opinions)
by Das
Amateur Dslr Users Meetups/ Photo sh...
by sandy
Pets name....
by Weeram
Beginners Astronomy
by sandy
Five surprising things which can har...
by sandy
What would the perfect phishing attack from a social engineering perspective? PDF Print E-mail
Written by crashoveride   
Wednesday, 02 July 2008
HSBC sites vulnerable to XSS flaws, could aid phishing attacks
The one that compared to using typosquatted domains impersonating the bank’s web application directory structure is in fact using the bank’s legitimate domain names as redirectors due to XSS flaws within. It’s even more interesting to measure the average time it takes for a bank to fix the XSS flaws within its sites upon getting notified of them, which in some cases is longer than the average time it takes to shut down a phishing site.


In yet another compilation of XSS vulnerable sites coutesy of Dimitris Pagkalos at XSSed.com, the largest online archive of XSS vulnerable websites, HSBC Holdings plc owned domains are vulnerable to XSS flaws which could easily aid in a phishing attack.
Comments
Add NewSearchRSS
sandy - very very worrying news Publisher | 2008-07-08 21:33:44
Now i doubt how many other banks has this same problem in their online systems!!!
Write comment
Name:
Title:
UBBCode:
[b] [i] [u] [url] [quote] [code] [img] 
 
Security Image

Powered by JoomlaCommentCopyright (C) 2006 Frantisek Hliva. All rights reserved.Homepage: http://cavo.co.nr/

Last Updated ( Wednesday, 23 July 2008 )
 
< Prev   Next >
Other Articles By Same Author
Related Posts
Advertisement