Tuesday, October 09, 2007

Australia: XSS Flaw Makes PM Say: 'I want to suck your blood'

Liam Tung writes on ZDNet Australia:

The Web sites of Australia's two major political parties contain cross-site scripting (XSS) flaws, which could be exploited to fraudulently acquire political donations, say security experts.

A short line of script developed by a security enthusiast, Bsoric, causes the Liberal Party's Web site to read: "John Howard says: I want to suck your blood", while another script caused a window to pop up on the Labor Party's Web site, urging viewers to "Vote Liberal!"

More here.

0 Comments:

Post a Comment

<< Home