[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Full-disclosure] Insecure http pages referencing https form-actions.
- To: fd@xxxxxxxxxx
- Subject: Re: [Full-disclosure] Insecure http pages referencing https form-actions.
- From: Leandro Meiners <lmeiners@xxxxxxxxxx>
- Date: Wed, 10 Aug 2005 10:01:27 -0300
Eric,
There was a loooooooonnnnnnnnnnng discussion about this at
webappsec@securityfocus mailing list, check out the first mail at the
archives at
http://www.securityfocus.com/archive/107/402824/30/390/threaded
There is even a "Hall of shame" at http://AmirHerzberg.com/shame.html.
Regards,
Leandro.
----------------------------
Leandro Meiners
CYBSEC S.A. Security Systems
E-mail: lmeiners@xxxxxxxxxx
Tel/Fax: [54-11] 4382-1600
Web: http://www.cybsec.com
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/