As I mentioned in the last post I made here, I’ve uploaded a quick video proving the XSS, cross-scripting, ebayla bug, ebayla virus… javascript exploits by any name have persisted upon the ebaY site for over a full decade. Over 11 years.  Since before the term “XSS” was even born. Ebay has been aware of the issues that long.

Not only that, but they have reversed previous high-visibility public announcements of plans to control the use of active scripting content. In short they went back on their word and more-less buried the announcement thereof.

For best results view at youtube or expand to full screen. There is a complete url list of the pages seen in the video description area there.

I think the video says it all.

Do you trust this outfit with your financial and personal data?