XSS, CSRF, Injections and other forms of common web application exploitations are disclosed and discussed in order to further programmers' understanding of these easily preventable security issues.
I follow the responsible Full Disclosure Policy giving site maintainers sufficient time to secure exploits. Also see my site, vancouver wedding photography.
Banking giant HSBC France was exposed today with a multitude of unforgivable security violations including MS-SQL injections that led to the revelation of plaintext (and simple) administrator passwords. Unu, the same tester from the UK Parliament SQL injection of a few days ago, now presents you with the clusterfuck that is HSBC France security.