Skip to content

emka.web.id

menulis pengetahuan – merekam peradaban

Menu
  • Home
  • Tutorial
  • Makalah
  • Ke-NU-an
  • Kabar
  • Search
Menu

ABC and SkySport Website is Vulnerable

Posted on February 25, 2012

A hacker that goes by the online handle Freedom provided us with proof regarding cross-site scripting vulnerabilities that exist in popular websites such as the ones of Yves Saint Laurent (ysl.com), ABC (abc.go.com), and Sky Sports (skysports.com).

“The first been ABCGO and this was a very easy XSS issue, the security of the site belongs in the trash can if you ask me,” the hacker told us.

The vulnerability that affects Sky Sports was, according to the hacker, easy to find by anyone with basic HTML skills.

Operation Freedom, as that’s what the hacker calls his mission to find security holes on websites that claim they do everything to keep their users safe, also revealed a flaw in the official Yves Saint Laurent online store.

“Every day ppl onling buy products from online stores and these stores make millions on pounds/dollars every year and the user gets told it’s safe and secure shopping online, and here is a very good example of a store online of a very big brand that is well a security risk to people’s information and safety online,” he added.

Freedom identified a couple of vulnerabilities, that were also found by TeamHav0k a few days back, in official sites owned by sportswear manufacturers Puma and Adidas.

All the flaws were reported to the sites’ owners, but as in many cases, grey hat hackers are ignored when they contact administrators, either because the admins don’t know how to address the issues, or because they simply don’t care.

“All of these companies make millions every year and there security is not up to scratch. All of these XSS issues could be abused to use users to commit illegal activities, crimes, if abused in the right way. When I say they where easy, I found all 4 of them in 10 mins. For websites that sell stuff and users use there credit cards on, it’s an abomination,” Freedom concluded.

via Softpedia

Terbaru

  • Cara Menggunakan Stellarium Web
  • Cara Menghapus Data KTP Pribadi di Pinjol yang Belum Lunas
  • Cara Mengganti Nomor TikTok yang Tidak Aktif atau Hilang Tanpa Verifikasi
  • Cara Menggunakan BCA PayLater Terbaru 2025
  • Cara Mendapatkan IMPoint Indosat IM3 Ooredoo Gratis via MyIM3
  • Apa Arti TikTok ‘Shared With You’?
  • Cara Menghapus Data KTP di Pinjol: Panduan Lengkap
  • Cara Download WhatsApp GB Terbaru 2025 – Fitur Lengkap & Aman
  • Review WhatsApp Beta: Apakah Aman? Cara Instal dan Cara Keluar
  • Bebong: Makna, Asal Usul, dan Penggunaan dalam Bahasa Indonesia
  • Spinjam dan Spaylater: Apa yang Terjadi Jika Terlambat Membayar dan Bisakah Meminjam Lagi?
  • Cara Download dan Menonton Dood Stream Tanpa Iklan – Doods Pro
  • Cara Menghentikan dan Mengatasi Pinjol Ilegal
  • Kode Bank BRI untuk Transfer ke PayPal
  • Cara Menyadap WhatsApp Tanpa Aplikasi dan Kode QR
  • Apa yang Terjadi Jika Telat Bayar Shopee PayLater?
  • Telat Bayar Listrik 1 Hari: Apa yang Terjadi?
  • Cara Mengunduh Foto Profil WhatsApp Teman di Android, iPhone, dan PC/Mac
  • Rekomendasi Aplikasi Edit Foto Ringan Terbaik untuk PC Windows dan macOS
  • Cara Membeli Diamond Mobile Legends Menggunakan Pulsa Telkomsel
  • Tutorial Menggunakan Aplikasi Dana: Cara Top Up Dana dengan Mudah, Cepat, dan Murah untuk Pemula
  • Website Konverter YouTube ke MP3 Terbaik 2025
  • Cara Mengatasi Otorisasi Kadaluarsa Higgs Domino Tanpa Login Facebook
  • Tips Main E-Football 2024: Strategi Pemilihan Tim dan Pemain Terbaik
  • DramaQ: Situs Nonton Drakor Sub Indo Terbaru dan Lengkap
  • IGLookup: Cara Download APK dan Informasi Lengkap
  • Cara Daftar DrakorID? Apakah DrakorID Streaming Penipu/Ilegal?
  • Cara Login, Register, dan Transfer Data MyKONAMI
  • Website PT Melia Sehat Sejahtera Apakah Penipuan?
  • Alternatif APK Bling2: Alternatif Stylish untuk Ekspresi Diri
  • Cara Menggunakan Stellarium Web
  • Cara Menghapus Data KTP Pribadi di Pinjol yang Belum Lunas
  • Cara Mengganti Nomor TikTok yang Tidak Aktif atau Hilang Tanpa Verifikasi

©2025 emka.web.id | Design: Newspaperly WordPress Theme