Paid Advertising
web application security lab

Yahoo Mail XSS in Style tags

There was an interesting vulnerability found in Yahoo! Mail by Cheng Peng Su. It uses a style obfuscation method pulled almost directly from the XSS Cheat sheet. It just goes to show that sometimes the most complex forms of obfuscation really are worth discussing, because XSS filters are often highly flawed.

Respond here or Discuss On the Forums