The exploit infects users machines via a malicious email link and reportedly targets a cross-sitescripting (XSS) weakness in Yahoo.com. TheHell claimed that when clicked the malicious link exploits a cross-sitescripting bug that lets criminals...
Cross side scripting malware into your site. Injection scripting code into your links. Attack! How do these vulnerabilities (also known as attack surfaces) offer competitors new opportunities to take you off page one into SEO oblivion?
Well first, the protocol is new, developed by Google, untested in the wild, not well reviewed outside of Google, and the very process it uses opens up your code to a wider attack surface for things such as XSS (crosssitescripting where someone...
The glitch is specific to Explorer, the pair reported, and uses a crosssitescriptingattack. Philipp Lenssen has discovered a hack to Google's XSS that allows access to personal data, according to Blogoscoped today.