American Express website vulnerable… again!

A few days ago a Cross-site-scripting vulnerability was discovered and reported on the American Express Site. A XSS vulnerability can allow attackers to steal user authentication cookies from, thus leading to an account hijack. As web-security consultant Joshua D.Abraham said, web developers addressed only one instance of the problem. They did not fully assess […]

