






|
by IBM Lotus Support
A phishing attacker sends an email with a link purporting to be to your website. It begins with your domain name, but employs the &redirectto argument to actually steer the user to their site if they click the link.This feature is used legitimately to create authentication pages that on logout, redirect the user to another page onsite that doesn't require authentication. But for some high-security sites, the functionality may be problematic.
We are not giving a specific example here on the theory that one should avoid giving instructions on how to attack server security...
| |
| |
|
.: News4Notes :: Lotus Notes and Domino News :: News4Notes :.
Daily technical Lotus Notes and Domino News at news4notes.com or as RSS feed at rss.news4notes.com...

|