Skip to content

Instantly share code, notes, and snippets.

@Hunter-Dolan
Created July 11, 2011 15:13
Show Gist options
  • Save Hunter-Dolan/1076059 to your computer and use it in GitHub Desktop.
Save Hunter-Dolan/1076059 to your computer and use it in GitHub Desktop.
osfoora.js
document.write('I am writing this message today to show you how some people don\'t know how to strip javascript from certain elements of a page, app, or tweet. Odds are if you\'re reading this you are using Osfoora or another Twitter Application that doesn\'t take security seriously... Now most will say... "oh what can you do with JS". Well the answer to that is many things. For instance get you\'re current location\, redirect you to an advertising site, Crash what ever app you\'re using right now. And maybe even get information from you\'re current app like API keys, passwords ,etc... Now I\'m not going to do any of that, because I\'m a nice person, but come on app writers! Take security a bit more seriously!!');
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment