[Full-disclosure] Fwd: multi billion dollar corporation hasnt fixed its privacy flaw yet

Jeb Bush xploitable at gmail.com
Sat Aug 26 23:23:37 BST 2006


---------- Forwarded message ----------
From: Jeb Bush <xploitable at gmail.com>
Date: Aug 26, 2006 11:20 PM
Subject: multi billion dollar corporation hasnt fixed its privacy flaw yet
To: security at yahoo-inc.com


if you agree to add each other as a friend on yahoo messager

and one user decides to ignore you

the malicious user who was ignored only needs to create a secondary
yahoo id on the same account to see the persons online status

regards

-Jeb




Full-Disclosure is hosted and sponsored by Secunia.