Cotton Rohrscheib

The Cotton Club Blog & Podcast

  • Home
  • Bio
    • Resume
  • Blog
    • Faith & Family
    • Marketing & Tech
    • Farm & Business
    • Entertainment
    • Health & Wellness
    • Urban Farming
    • Weekend Projects
  • Media
    • Newsletter
    • Photo Galleries
    • Instagram Feed
    • Video Archives
    • Podcasts
    • Music Playlists
  • Books
  • Connect
    • Rohrscheib Capital
    • Disclaimer
    • Privacy Policy
You are here: Home / Blog / PayPal XSS Vulnerability (EV SSL)

PayPal XSS Vulnerability (EV SSL)

May 19, 2008 by Cotton Rohrscheib Leave a Comment

PayPal fell victim to a cross-site scripting vulnerability this past week.  Basically it would allow hackers to carry out a few tasks such as stealing credentials from users as well as displaying their own content.  PayPal, in my opinion, has always done a good job in terms of staying up on security risks over the years, especially given the volume that they run through on a daily basis.  I am sure this exploit was probably repaired quickly by PayPal’s technical team but what kind of makes the story interesting to me is the fact that PayPal was running the new EV SSL Certification.  You probably have noticed that while you are on a secure website the URL line of your browser will turn Green to say that everything is okay with the website and your transaction.  Well, apparently the EV SSL isn’t as bulletproof as everyone once thought.  I can remember my partner Greg and I laughing one day at how overrated some of the SSL products are that are on the market today.  This is going to be an interesting story to watch…

For the record, I do believe that having an SSL or EV SSL on an e-commerce website is a great idea, it simply doesn’t mean that a website doesn’t have some underlying security issues, etc., the purpose of the SSL, as I have always seen it, is to provide the end user or customer with assurance that the website they are on is legitimate and not a “fraud or redirection”. 

Source: PayPal XSS Vulnerability Undermines EV SSL Security – Netcraft

Share this post on:

  • Click to share on Facebook (Opens in new window) Facebook
  • Click to share on X (Opens in new window) X
  • Click to share on LinkedIn (Opens in new window) LinkedIn
  • Click to share on Pinterest (Opens in new window) Pinterest

Related

About Cotton Rohrscheib

The Cotton Club is a monthly podcast hosted by me, Cotton Rohrscheib. I'm a 52 year old entrepreneur w/ ADHD, OCD (and now AARP) that refuses to grow up as I grow old. I have collaborated and invested in hundreds of projects throughout my career in multiple industries such as; technology, healthcare, and agriculture. I also have 25 years experience in the marketing industry as a co-founder of an award-winning advertising agency. I will undoubtedly cover a wide variety of topics on my podcast while sharing some really crazy stories and situations that I've been fortunate to witness firsthand. I also have a book coming out in 2025 titled, "Mistakes were Made"

Please Drop Your Questions or CommentsCancel reply

Let’s Connect

  • Email
  • Facebook
  • Instagram
  • LinkedIn
  • Twitter

Recent Updates

  • EP:032 – Cotton Rohrscheib & Diana DeHart
  • Challenges & Opportunities Going into 2025
  • Find us at the 2025 Arkansas Women in Agriculture Conference in Hot Springs, Arkansas
  • Be Sure to Checkout FBN’s Farmers First™  Crop Nutrition & Adjuvant Lineup for 2025
  • What we all need in Dark Times…

Blog Categories

  • Blog (419)
  • Entertainment (376)
  • Faith & Family (147)
  • Farm & Business (288)
  • Health & Wellness (33)
  • Marketing & Tech (584)
  • Podcasts (31)
  • Urban Farming (20)
  • Weekend Projects (1)

Listen & Subscribe

Blog Archives

Join the Cotton Club!

 

Content Copyright: 2001-2025
Cotton Rohrscheib | Rohrscheib Capital