Simon Willison’s Weblog

Items tagged amazon, security, chrisshiflett, csrf in Mar, 2007

Filters: Year: 2007 × Month: Mar × amazon × security × chrisshiflett × csrf ×


Chris Shiflett: My Amazon Anniversary. Chris Shiflett discloses an unfixed CSRF vulnerability in Amazon’s 1-Click feature that lets an attacker add items to your shopping basket—after reporting the vulnerability to Amazon a year ago! # 16th March 2007, 10:16 am

Types

Years

Months

Tags