Hacker News new | ask | show | jobs
by ryan-c 4270 days ago
I've found XSS bugs that allow full account takeover being actively exploited on Yahoo! a couple of times. They have a lot of legacy crap that was written 15-20 years ago.