Tag: Cross Site Scripting
by
Doc on 05/11/2016
9:40 AM
Another dangerous eBay security vulnerability was recently discovered by researchers. This allows fraudsters using a highly advanced coding technique known as JSfuck, to install malware on unsuspecting members smartphones. We have been observing eBay security vulnerabilities back as far as 2004, examples are Here Here and Here. Why they allow this sloppy security is anyone’s best […]
Tagged as: Cross Site Scripting, Malware, XSS
by
Doc on 06/02/2014
6:59 PM
Had some severely degraded server performance that started Saturday around noon. “Images that normally loaded lightning fast were loading at what looked like an old 300 baud modem speed. Trying to download a recent backup file was impossible as it was so slow it timed out.” Come Sunday it was still degraded. So i put […]
Tagged as: Cross Site Scripting, DDOS, Used Cars, XSS
by
Doc on 03/01/2014
9:31 AM
Summary of 10 years watching eBay Auction Fraud and Used Car Scams. Buyers and Sellers were conned out of their money by slick-talking fraudsters and bad sellers. These observations destroyed buyer and seller trust and well-established community values. It is Doc’s belief, that had Meg Whitman taken a stand against fraud and misrepresentation back in […]
Tagged as: Car Scam Example, Collector Car Phishing Scams, Cross Site Scripting, eBay Motors History, Hacking, Internet Car Scams, JavaScript Redirect URL
by
Doc on 01/20/2014
10:24 AM
Watch as this scam listing and 2 others uses an uncorrected XSS Cross-Site Scripting Vulnerability and whisk me off to a hacked website. Phishing Fraud and Identity Theft can then occur! Fraudsters hack a website and create a directory just above its public root. They then upload their scripts and images etc. Then plant their […]
Tagged as: Cross Site Scripting, eBay Motors, Flash XSS Redirect, JavaScript Redirect URL, Redirect
by
Doc on 06/21/2013
9:06 AM
These used trucks up for auction on eBay Motors are too good to be true used vehicle deals. Your money will be stolen in the blink of an eye if you swallow the fraudsters sucker bait. We start out with this 2010 Audi A5 2.0L Quattro that just smells phishey (251293192571). Next is this 2006 […]
Tagged as: 1FTSW21R88ED59790, 1G1ZA5EU7CF360678, 251293118796, 251293143848, 251293192571, 271226527725, 300922034722, 5TBBV54117S470144, 5UXFA93586LE84365, Car Scam, Cross Site Scripting, JavaScript Redirect URL, New Seller eBay Car Scams, WAULFAFR8AA010520
by
Doc on 02/15/2013
7:50 PM
StupidToy99, I sincerely feel sorry for your loss. Unfortunately, you are not the only one that has become a victim of, In my personal opinion, eBay’s sloppy unsecured system. Rarely has there been a day that Google’s safe browsing report has not found some form of Malware or Exploit on eBay.com. Complaining on eBay’s forums […]
Tagged as: Cross Site Scripting, Malware
by
Doc on 01/23/2013
9:56 AM
Looks like that old eBay XSS Cross-Site Scripting Redirect snagged another victim. $8,500 is a lot of money to lose. Cover your butt and be sure a deal is for real! Don’t become another victim of Internet Phishing Fraud! “From this eBay Motors Post: An eBay shooting star TRS power seller stupidtoy99 lost $8500 on […]
Tagged as: Cross Site Scripting, Flash XSS Redirect, JavaScript Redirect URL
by
Doc on 10/22/2011
1:34 PM
This poster on eBay’s Motors Forums claimed he was redirected to www.bestatvstore.com after clicking on an eBay internal link. That sounds like another eBay XSS Redirect that has been uncorrected for many years. Hey John Bodine.. Why don’t you post in one of your eBay forums “we heard you and have fixed that redirect vulnerability.” […]
Tagged as: Cross Site Scripting, Hacking, JavaScript Redirect URL
by
Doc on 03/13/2010
2:16 PM
It’s Saturday Morning and apparently Nobody is home in San Jose at eBay headquarters minding the store. This 2007 Chevy Tahoe Redirect Scam (320499691440) that Doc reported on last night is still up and scamming! It has been up at least 2 days now and has had over 5000 page views! That’s a lot of […]
Tagged as: Cross Site Scripting, Meg Whitman. Redirect, XSS
by
Doc on 02/18/2010
3:19 PM
Watch as this Chevy Tahoe eBay listing redirects me off of eBay Motors to a fraudster controlled website, where someone’s Identity and Money will be stolen! In order to capture this scam on screen video Doc used his Blackberry as an IP Modem to slow the action down. Normally the second you enter the hacked […]
Tagged as: Cross Site Scripting, Flash XSS Redirect, JavaScript Redirect URL, Redirect