« URL Typo Correction Services Kill | Main | .arpa, .org and .uk Soon to Go DNSSEC »
April 22, 2008
XSS Watch, PA Primary Special Edition
“XSS Watch - Inaugural and Probably Last Edition,” more likely, but it’s primary day and I’m all out of red, white and blue bunting clip art.
Anyhow, a hacker found an exploit in the Obama campaign’s Web site and used it to send visitors to Hillary Clinton’s.
Netcraft’s Paul Mutton has some information on what appears to have been a prank.
Someone claiming to be the hacker posted a community blog entry on the Obama site claiming that he or she used a common cross-site scripting exploit to pull off the redirects.
CNET’s Elinor Mills says an e-mail sent to CNET late last night from someone claiming to be the hacker read: “this exploit was not at all politically motivated, and it was simply an immature prank meant purely for fun. Senator Clinton had no hand whatsoever.”

Except we all know that Senator Clinton is totally elite!
Xssed has more details on the exploit itself.
If that’s not enough political stuff for you, go play with Google’s election map, which is explained in a little detail over at the Official Google Blog.
Posted by mhall at 6:50 PM | Add Comment


Leave a comment