On monday 3rd January, a picture of Mr Bean appeared in the official website of the Spanish Presidency substituting the official video of Mr Zapatero. Apart from highlighting the similarities between both characters, this attack demonstrated the vulnerability of the website administrated by Telefónica. However, unlike the press has reported (for instance here, here and here), the website has not been hijacked. Instead, the website has a failure that permits users to take advantage of XSS vulnerabilities. In other words, someone published a wrong link to go to the official website which modified how the user viewed the website but without actually modifying the site.


Newsletter
Euros du Village
Gli Euros
Die Euros
The Euros
Los Euros
Ajouter un commentaire
Ajouter un commentaire