[Full-disclosure] Grab a myspace credential

Juha-Matti Laurio juha-matti.laurio at netti.fi
Tue Jan 16 13:10:01 GMT 2007


This “Suspected Web Forgery” alert by Firefox 2.0.0.1 was generated very soon after the disclosure process.
It appears that team(s) behind this technology are reading FD list regularly.

- Juha-Matti


Steven Scheffler <steven at forwardslash.com> wrote: 
> 
> If you dig into google's cache you will see that
> http://www.marcolano.com/login/ has a spoofed myspace.com login screen
> where ppl enter their credentials. These are saved in a plain text file
> myspace.txt.
> 
> Firefox2 warned me about marcolano.com is a phishing site.
> 
> S




Full-Disclosure is hosted and sponsored by Secunia.