Change Player Size
Watch this video in a new window

ebay Flash Redirect XSS Flaw Alive and Well

Found on the ebay site: Flash manipulation xss flaw alive and well! Ebay is still a dangerous website! Stay safe this holiday season! Avoid ebay and IT's long uncorrected critical safety flaws! U...  
 
Customize

More From: cappnonymous

Loading...

QuickList(0)

Featured Videos

Upgrade to Flash Player 10 for improved playback performance. Upgrade Now or get more info.
11 ratings
Sign in to rate
238 views
Want to add to Favorites? Sign In or Sign Up now!
Want to add to Playlists? Sign In or Sign Up now!
Want to flag a video? Sign In or Sign Up now!

Statistics & Data

Loading...

Video Responses (1)

Sign in to post a Comment

Text Comments (12)   Options

Loading...
ozgood1x (3 weeks ago) Show Hide
+4
Marked as spam
HOLY COW !
That's an Eye Opener !
Thanks so Much Cap !
gmajorspresents (3 weeks ago) Show Hide
+5
Marked as spam
Where are the FEDS and The SEC?
cappnonymous (3 weeks ago) Show Hide
Marked as spam
Hello gmajorspresents.
Good question?
Asleep maybe? With a dubious bedfellow perhaps? lol.

People whom have fallen victim to, or are concerned about this issue should file complaints to any & all appropriate agencies, & spread the word that ebay is neither safe, honest, reliable, prompt or timely correcting critical safety flaws.

And although ebay claims enhancement of user experience outweighs the need for safety, they should walk in the shoes of the victims.

Avoid KKKbay like the plague!
GoodbyeEbay (3 weeks ago) Show Hide
+3
Marked as spam
LOL @ KKKbay
GoodbyeEbay (3 weeks ago) Show Hide
+7
Marked as spam
Good video!

Nothing says fun for the Holidays like having your ID stolen, bank accounts cleaned out and your credit ruined all while being lied to and abused by some fly by night outfit that can't or won't even secure their own fraud infested site.

HAhahahahaha!

The odds are overwhelming this is all an inside job btw.
They must be making money on this otherwise they would fix it. Look how fast they act upon anything like, like truthful forum posts for instance
cappnonymous (3 weeks ago) Show Hide
Marked as spam
Hello Geezer.
Yes, inside job you say?
Whether by overt act, by pure indifference, arrogance or complacency, I believe you are correct.
No reason to correct it when they can just blame the user and brush them aside, count the cash.
Go have a look at the firejohndonahoe public blog, where you will see the source code. (link in more info area) Apparently the flash snippet was somehow placed into the non ebay description area. Outside the iframe which contains the UGC .... Internal hackers?
shaynahertl (3 weeks ago) Show Hide
+6
Marked as spam
Thanks Capp, this is great information to have!!
cappnonymous (3 weeks ago) Show Hide
Marked as spam
Hello shaynahertl
My pleasure.
Thanks for watching and commenting.
CameoCollections (3 weeks ago) Show Hide
+5
Marked as spam
Who in their right mind would bid on an item with a Seller of only 17 feedback for $7,850? That is crazy. Thanks again Capp, you are the awesomest boycotter ever.

And EBAY STILL SUCKS.

Huggs
Cameo
cappnonymous (3 weeks ago) Show Hide
Marked as spam
Hello CameoCollections.
Thanks for watching & commenting.

In this case, the extra extra low price is just to get you to open the listing and be redirected to the fake login page.

We've all heard the saying about if something seems too good to be true...
That describes the entire ebay experience.

Would you like to comment?

Join YouTube for a free account, or sign in if you are already a member.