The most popular Russian social networking website, VKontakte.ru, has a status system that allows users to edit their status messages. The status itself is located in this string: “XSS” The first vulnerability is introduced on the user’s machine by using the tag: by entering the string
XSS, we get a hyperlink clicking on which brings up a status editing window and, a moment later, opens google.com.com.
Source: https://thehackernews.com/2011/03/xss-vulnerabilities-in-russian-social.html

