Naked Security |
eBay XSS bug left users vulnerable to (almost) undetectable phishing attacks
Naked Security But if you were to input your email and eBay password, it would have returned an error message, while your login information could have been harvested by malicious hackers who might have then had free rein to wreck havoc in your hijacked account. eBay accused of slow response to critical vulnerability and phishing peril |
More: continued here