
I discovered a huge security hole in Citibank's online Account center that lets coComment publish any messages you send to Citibank.
Interesting, when I clicked on the image of the letter it took me to a Flickr account
Correct. That's my flickr account where I have the screen shots stored. Citibank has since been minimally responsive and coComment has posted about it in their official blog. Read more about it here:
http://blog.cocomment.com/2007/03/19/cocomment-security-and-privacy/
http://www.openthedialogue.com/2007/03/insecure_messaging_at_citibank.html
You're in Easy Mode. If you prefer, you can use XHTML Mode instead. |