Feed Sign in with OpenID OpenID

Simon Willison’s Weblog

Chris Shiflett: My Amazon Anniversary. Chris Shiflett discloses an unfixed CSRF vulnerability in Amazon’s 1-Click feature that lets an attacker add items to your shopping basket—after reporting the vulnerability to Amazon a year ago!

Tagged , , ,

0 comments

No comments.

Comments are closed.
A django site