tag:blogger.com,1999:blog-34454975.post6141623914606153680..comments2023-06-28T16:58:41.189+02:00Comments on Web Reflection: Internet Explorer 6, 7, or 8 exposes users data via JavaScriptAndrea Giammarchihttp://www.blogger.com/profile/16277820774810688474noreply@blogger.comBlogger6125tag:blogger.com,1999:blog-34454975.post-2373362526608484802008-09-08T20:16:00.000+02:002008-09-08T20:16:00.000+02:00AndreaI've been in touch with MS and they are trac...Andrea<BR/><BR/>I've been in touch with MS and they are tracking it now. Thanks! They didn't spot this oneAnonymousnoreply@blogger.comtag:blogger.com,1999:blog-34454975.post-69059643325277609082008-09-08T17:35:00.000+02:002008-09-08T17:35:00.000+02:00I encountered the same problem when I found a hole...I encountered the same problem when I found a hole in Safari beta which allowed cross site data reading. The media wasn't interested even though less serious vulnerabilities were plastered over the media. It seems you need a PR department these days.<BR/><BR/>Don't worry people are listening even when they don't comment. I've not verified your vulnerability but I'm a regular reader of your blog so I'm sure it's a 100% correct.<BR/><BR/>Keep up the good work and ignore the media! We are the media now ;)Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-34454975.post-12422686727516626152008-09-08T17:27:00.000+02:002008-09-08T17:27:00.000+02:00Thanks Gareth, the weird stuff is that nobody repl...Thanks Gareth, the weird stuff is that nobody replied to say "<I>what the hell are you talking about</I>", and nobody replied to say "<I>huston, we have a problem</I>" :D<BR/><BR/>What I mean, is that right now malicious developers could steal Credit Card information from one of the most popular air company site, so I suppose my post required more attention, that's it.Andrea Giammarchihttps://www.blogger.com/profile/16277820774810688474noreply@blogger.comtag:blogger.com,1999:blog-34454975.post-63549611655048448922008-09-08T17:21:00.000+02:002008-09-08T17:21:00.000+02:00Andrea there's a selective media especially when i...Andrea there's a selective media especially when it comes to security reports. I'm sure your post was read, if not I'll pass it on to someone at MS.<BR/><BR/>I've took the attitude to accept this and still post reports anyway because I enjoy it.Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-34454975.post-81600081595450622352008-09-08T14:24:00.000+02:002008-09-08T14:24:00.000+02:00try to login into gmail, try to login into a form,...try to login into gmail, try to login into a form, try to save data with Internet Explorer, then try again the example page, and wait for about 10 seconds.Andrea Giammarchihttps://www.blogger.com/profile/16277820774810688474noreply@blogger.comtag:blogger.com,1999:blog-34454975.post-65906251516873810112008-09-08T14:15:00.000+02:002008-09-08T14:15:00.000+02:00I don't know... but your sample page didn't work i...I don't know... but your sample page didn't work in my Exploder version 6...Anonymousnoreply@blogger.com