"ASCII" <me2@privacy.net> wrote in message news:4e8f7e85.6138468@PEACE...
> Dustin wrote:
>>but I do remember reading about a
>>known vulnerability which will cause the browser to offer up it's
>>history and cache to the server upon request.. I'll look into it more.
>
> Sounds like some js trick instead of CSS (a display mode),
> but in Opera you can periodically dump the browsing cache
> with a simple keyboard entry [ctrl + T] [D] [enter].
> Be sure to check all boxes in the dropdown 'Detailed Options'.
He's probably remembering an XSS browsing history attack.
XSS (formerly CSS) exploits a client's trust relationship with a server.
http://crypto.stanford.edu/cs155/papers/CSS.pdf


Reply With Quote
)