Get a Pentest and security assessment of your IT network.

News

Secure Amazon Seller Central password reset page XSSed

XSS bug affects the “Password Assistance” page, thus becoming the ideal phishing weapon for fraudsters. Seller Central is where sellers who signed up for the “Checkout by Amazon” service can view and manage their orders. With border set to 0 in the tag, it could retrieve a deceitful seller central user login page that logs authentication credentials in cleartext and sends them to the fraudster’s e-mail inbox. “See Me” injected an iFrame tag that retrieves the first page of XSSed.com.”]

Source: http://www.xssed.com/news/127/Secure_Amazon_Seller_Central_password_reset_page_XSSed/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Who and why is attacking companies in the Nordic Countries?

News

Shamoon Malware, cyber espionage tool, cyber weapon or