Get a Pentest and security assessment of your IT network.

News

Prominent Web Sites Found to Have Serious Coding Flaw

Cross-site request forgery (CSRF) allows an attacker to perform actions on a Web site on behalf of a victim. The flaw was found on the Web sites of The New York Times, ING Direct, Google’s YouTube and MetaFilter. CSRF flaws have largely been ignored by Web developers due to a lack of knowledge, academics say. On both sites, the CSRF problems have been fixed, the authors wrote. In one case, an attacker could transfer a victim’s money into their own account.”]

Source: https://www.csoonline.com/article/2123285/prominent-web-sites-found-to-have-serious-coding-flaw.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

BlackEnergy exploits recently fixed flaws in Siemens WinCC

News

Google Chrome will block code injection from third-party software within 14 months