Simon Willison’s Weblog

Items tagged amazon, csrf in 2007

Filters: Year: 2007 × amazon × csrf ×


Chris Shiflett: My Amazon Anniversary. Chris Shiflett discloses an unfixed CSRF vulnerability in Amazon’s 1-Click feature that lets an attacker add items to your shopping basket—after reporting the vulnerability to Amazon a year ago! # 16th March 2007, 10:16 am

Types

Years

Months

Tags