Netscape.com owned with XSS
July 26th, 2006 - By: Alex BaileySomeone has posted malicious javascript on netscape.com that pops up alert boxes, and redirects to digg.com. The alert boxes were removed quite fast, but the redirect on news.netscape.com is still there as of 5:58 AM Central time. More details can be found at PacketStorm. Apparently the author warned netscape about this flaw multiple times, and posted it on PacketStorm, so you can't really feel bad for what happened. Upon visting netscape.com you are greeted with the message "fuck" in an alert box, then it says "Hi to all you Diggers out there ;)". It then repeats this. On going to news.netscape.com you're confronted with "this site sucks. go here instead:" and then redirects to digg.com. I took screen shots of this before they deleted them so have a laugh at them :).











1. naser | July 26th, 2006 @ 8:04 PM |
+0
Heh..amen to the hacker… Screw netscape..its the ole’ brawl all over again (http://digg.com/tech_news/Did_digg_just_hacked_netscape) .. I’d like to see where it all ends.
2. Morely Dotes | July 26th, 2006 @ 9:24 PM |
+0
Netscape and Digg are both irrelevant. The only thing Netscape.com seems to be good for is providing temporary email addresses for spammers. I am unable to find anything useful about Digg whatsoever.
3. myName | August 7th, 2006 @ 6:55 AM |
+0
All relevant screenshots and such are removed… hail to the free world!
4. Rub3X | August 7th, 2006 @ 8:22 AM |
+0
Sorry was moving files around on the server, they’re back.
Leave a comment