The role and seriousness of cross-site scripting (XSS) vulnerabilities has been 
a subject of recent Full-Disclosure discussion.

The fact is, however, that since Saturday You can simply pick the following 
widely known targets of XSS:
bankofamerica.com, cnn.com, fbi.gov, symantec.com, apple.com etc.

I have collected more than 10 reports about well-known Web sites suffering 
about XSS issues.
According to the source Xssed.com most of them are still unpatched.

Link to the SecuriTeam Blogs post:
http://blogs.securiteam.com/?p=1030

- Juha-Matti
_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.

Reply via email to