twesterm said:
The one he shows where it's just the log in one isn't as easy to get fooled but the ones where it says you session has expired is just plain evil, especially with the CSS mining. If you had your gmail, facebook, or bank tab open, looked at another tab for a few seconds and then saw your session timed out would you look at your address bad first? It isn't so much about memory or being gullible, it's more about just being a really clever attack. And yeah, it's surprising it has taken this long for someone to figure that out.
|
This could even happen on safe sites like Google or Yahoo?
Kimi wa ne tashika ni ano toki watashi no soba ni ita
Itsudatte itsudatte itsudatte
Sugu yoko de waratteita
Nakushitemo torimodosu kimi wo
I will never leave you







