The McAfee.com website is full of security mistakes that could lead to cross-site scripting and other attacks. The holes with the site were found by the YGN Ethical Hacker Group. The company markets a McAfee Secure service to enterprises for their customer-facing websites. McAfee told Network World that it is investigating the Full Disclosure vulnerabilities report. In 2009, white-hat hacker Methodman published proof-of-concept attacks against websites kc.mcafee.com and mcafeerebates.”]