Adobe has finally released an advisory on the "clickjacking" issue
"Coincidentally", both events (the advisory release and the PoC release) took place on October 7th, once again underlining the importance and community benefits of pressuring vendors into Doing The Right Thing. Indeed, to the uninitiated it would appear that Adobe took the road more travelled and effectively sat on the patch until it was forced to release it and thus admit to having made a mistake sometime in the past.
Those of you who aren't following this column (for shame!) will be interested to find out that Adobe had in fact pressured the two researchers who dreamed up "clickjacking" into not publicizing details of the exploit.
On an unrelated note, it's pretty sad to see that the "clickjacking" concept/meme is gaining traction - it's just a trick with frames, the likes of which have been known since time immemorial.
RELATED INFO:
Clickjacking and why it is bad for you
Copyright 2011. Site powered by Bitdefender