WRONG! Once again xss is not the exploit it is just the delivery
mechanism.
obviously it is the delivery vector, by using the persistant or
non-persistand xss flaw in ones site / web app
.. dont think i said otherwise
You aren't doing anything here that you couldn't also do by posting the
exploit on your damn live journal right next to the paris hilton video.
WRONG! I dont have a LiveJournal page, but i am sure you prolly do and
read
others bs dribble on fase-book or whatever other bs social gayness site
you
follow
Did you end up paying damages?
huh?
YAY!
w00t!
On Dec 13, 2007 11:46 AM, Morning Wood <se_cur_ity () hotmail com> wrote:
4. use xss to IFRAME or otherwise leverage a client exploit
imho this is by far worse than any of the other vectors mentioned