The flaw could allow hackers to conduct phishing attacks and spread malware
News XSS
Magento Flaw Puts Millions Of Ecommerce Sites At Risk
Ebay-owned back end system releases patches to fix a number of damaging vulnerabilities
5 Ways To Limit Damage Caused By XSS Flaws
XSS may be the easiest way for someone to attack your website, but there are self-defence steps you can take
Dangerous XSS Vulnerabilities Found On Trip Advisor Website
XSS attacks are being used in combination with spear phishing, social engineering and drive-by attacks
Huawei E355 Wi-Fi Dongle Users Warned Of Major XSS Flaw
Huawei E355 XSS flaw is described as "close to as being bad as can be" with users advised to switch off scripting functionality
Non-Profit XSS Vulnerability Archive Launched
XSSposed wants Cross-Site Scripting vulnerabilities to be disclosed responsibly
Millions At Risk From Critical Vulnerabilities In WordPress Plugins
Millions of sites could contain serious flaws, security firm warns
Yahoo Mail XSS Vulnerability Still Exploitable After Patch
The patch that didn't patch up much
Tesco Password Security Fixed – But XSS Flaw Remains
No more plain text passwords? Every little security fix helps!
Tesco Pledges To Fix Web Security Flaws
TechWeekEurope pressure pays off as Tesco says it will fix issues, but given there are so many, which ones will it address?
Tesco Security: Very Little Help!
Tesco ignores the advice of TechWeekEurope and security researchers, making it unsafe to shop on Tesco.com, warns Tom Brewster
Fresh Flaw Found On Tesco Website As Customer Anger Swells
EXCLUSIVE: TechWeekEurope learns about another flaw in the Tesco website, following this week's revelations about poor password security
It’s Time For XSS To Be Exterminated
XSS flaws are the most common vulnerabilities on the Internet. Website owners should kill them, says Tom Brewster
No Sign of Reader Fix As Adobe Patches ColdFusion
Adobe released a fix for ColdFusion but no date has been set for the Reader zero-day vulnerability
Facebook Pursues Attackers After Porn Spam Attack
Facebook said it has identified the people who used a cross-site scripting vulnerability to spam users
Hackers For Hire At Bargain Prices
The cost of hiring a hacker is so affordable and effective, it is no wonder the craft is expanding, reveals Eric Doyle
Three Tweeters Claim Twitter ‘Onmouseover’ Flaw
Three different Twitter users claim to have first exploited the "onmousover" flaw, which is apparently a month old