Re: ISSUE-95: bookmark API interactions

On 2007-08-01 17:29:41 +0000, Web Security Context Issue Tracker
wrote:

> We need to have a look at the interfaces exposed to pages in

... scripts running as part of Web content, that is.  Sorry for poor
phrasing during the call.

> order to enable bookmarking of sites: If an attacker can cause
> (through bad user interaction or otherwise) a site with a trusted
> name to be bookmarked, then that attacker has effectively laid
> the groundwork for successful bookmark-based phishing.
> 
> 
> 
> 

-- 
Thomas Roessler, W3C  <tlr@w3.org>

Received on Wednesday, 1 August 2007 18:21:30 UTC