Group: Moderators Last Login: 8/9/2008 10:14 AM Posts: 29,518,Visits: 54,734
Researchers from Princeton University today revealed their discovery of four major Websites susceptible to the silent-but-deadly cross-site request forgery (CSRF) attack -- including one on INGDirect.com’s site that would let an attacker transfer money out of a victim’s bank account.