Log in

View Full Version : Security alarm - possible Cross Site Scripting on Facebook!


Bleiente
01-17-18, 01:51 AM
Since it can be assumed that I (hopefully) in this eventual "Black Hat" is not the only target, I would like to express a precautionary warning.

So nice to update your browser security and/or increase stock, temporarily disable the Java script and keep your eyes open.

--------------------------------------------------------------------------------------
Excerpt from the warnings of my security tool:

1. XXXX detected a potential Cross-Site Scripting attack
from http://de.ddl.me to https://staticxx.facebook.com.

Suspicious data:
TypeError: ic is undefined,(URL) https://staticxx.facebook...


2. XXXX detected a potential Cross-Site Scripting attack
from http://de.ddl.me to https://www.facebook.com.

Suspicious data:
TypeError: ic is undefined,(URL) https://www.facebook...
--------------------------------------------------------------------------------------

Who does not know what cross site scripting is and for one's own
Safety means, can read here:
https://en.ryte.com/wiki/Cross_Site_Scripting

With friendly greetings!

:salute:

Bleiente
01-17-18, 03:09 AM
Damn - maybe I was responsible for these warnings, I had saved the attackers page (a movie stream page) under my favorites... :o :doh: ..... :oops:

Jimbuna
01-17-18, 06:50 AM
Best you know what the root cause of the problem is and take steps to end it.