Become a fan of Slashdot on Facebook

 



Forgot your password?
typodupeerror
Security

Submission + - Campaign Sites Full of Vulnerabilities

An anonymous reader writes: Bloggers have been buzzing about the new wave of "Web 2.0" campaign sites, but it seems that a lot of presidential candidates haven't bothered to protect themselves from cross-site scripting attacks. A blogger has found a collection of XSS vulnerabilities including the websites of Barack Obama, Joe Biden, John Edwards, Mitt Romney, John Cox, Newt Gingrich, Tom Tancredo, the Democratic National Committee, and even a surprise from Whitehouse.gov. Some of the holes are low-risk, but others would allow a user's accounts on the affected website to be compromised. A victim would simply have to click on a maliciously crafted link that appears to lead to the candidate's site.

Slashdot Top Deals

This is clearly another case of too many mad scientists, and not enough hunchbacks.

Working...