[Full-disclosure] Phishmarket #2 (IFrame Spoofing/XSS on Austrian bank sites)

Matthew Flaschen matthew.flaschen at gatech.edu
Fri Feb 16 22:47:44 GMT 2007


skyout at gmx.net wrote:
> Dear Sir or Madam,
> 
> I want to point your attention to a new list, that shows up to 40 (!)
> vulnerabilities on Bank sites of Austria and proves another time
> how insecure online banking still is. The list is publicly available under:
> 
> ------------------------------------------------------------
> http://baseportal.com/baseportal/phishmarkt/at
> ------------------------------------------------------------

From the page:
> All used techniques are well known for many years and can be
> considered state-of-the-art.

Huh?

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 254 bytes
Desc: OpenPGP digital signature
Url : http://lists.grok.org.uk/pipermail/full-disclosure/attachments/20070216/4185c2f0/attachment.bin 


Full-Disclosure is hosted and sponsored by Secunia.