Email us! Subscribe to Liquidmatrix!

XSS Fun And Games

RSnake has a great post over on his blog about irony.

So, what the hell am I talking about? Here’s a quote from the posting.

The link made me laugh and thereby I am now sharing it with you. The link is to a QuickPlace XSS filter protection on IBM’s website. The irony here is that the link describing the virtues of XSS filtering is vulnerable to XSS. Oh what sweet irony.

Now, normally I would just link to the posting but, in all likelihood this won’t be working for much longer so I grabbed a screen shot of the XSS in action.

ibmxss.jpg

Hilarious.

Read the full post over on RSnake’s site.

Article Link

Tags: , ,

Tag It:
  • Digg
  • del.icio.us
  • Slashdot
  • Technorati
  • SphereIt
  • StumbleUpon
  • Fark
  • YahooMyWeb
  • Furl
  • Spurl
  • Ma.gnolia
  • NewsVine
Related Articles:

  • Was IBM.com At Cross-Site Scripting Risk? Yup.
  • Look Ma, I’m A CISSP (XSS)
  • XSS Exploits
  • Discounting The Threat Of XSS
  • Visual Studio Plugin XSSDetect Available
  • Liquidmatrix Security Digest » Was IBM.com At Cross-Site Scripting Risk? Yup. said,

    October 2, 2007 @ 8:19 am

    [...] it wasn’t the only XSS problem on IBM’s website. I posted this after reading RSnake’s blog on the subject. The only difference being I put up a screen [...]

    RSS feed for comments on this post · TrackBack URI

    Leave a Comment