Friday, October 8, 2004
Rogers Cadenhead: When his weblog moved in March, Michael Fioritto put JavaScript in the first item of his RSS feed to redirect visitors to his new site. The news aggregator AmphetaDesk read the script tag and executed the redirect, making it impossible for me to use the software until I unsubscribed from his feed, which probably wasn't the effect he was going for. An aggregator that doesn't strip out script and other dangerous tags is a security exploit waiting to happen.
[Workbench] 8:46:04 PM Link Google It!
[Workbench] 8:46:04 PM Link Google It!