Links in April 2008

CSRF pwns your box?!?!

Published April 21, 2008

I think this may be the first PURE CSRF vulnerability that I’ve seen that resulted in compromise of a victims machine

Ouch.

If you’re using Django, by the way, you really have no excuse if you get caught by a CSRF attack.

(Via Planet Websecurity)

Visit site

When Should Isaac Laquedem Stop Reproducing?

Published April 16, 2008

First line says it all, really:

You’re the Wandering Jew. When do you start worrying about sleeping with your own descendants?

Most brilliant Ask Mefi question in a while.

Visit site