Fri, 16 Jul 2004

Frame Injection Vulnerability

Secunia has reported another potential vulnerability in multiple browsers. (Mozilla 1.7, which I'm currently running, isn't affected; but older versions are.)

I'm not sure "vulnerability" is quite the right word. It's more of a design flaw: a malicious site could load content into a frame of another page (say, your bank's site) and mislead you into thinking it was safe. Of course, there are those of us who say that frames are, in general, pretty much a design flaw...

