Cotton Rohrscheib

The Cotton Club Blog & Podcast

  • Home
  • About
    • Entrepreneurial Journey
  • Blog
    • Collecting
    • Faith & Family
    • Marketing & Tech
    • Farm & Business
    • Entertainment
    • Health & Wellness
    • Urban Farming
    • Weekend Projects
  • Podcast
  • Newsletter
  • Media
    • Photo Galleries
    • Video Archives
  • Marketplace
    • Buying Gold & Silver
    • Accoutrements
      • Bags & Briefcases
      • Notebooks
      • Personal Carry
      • Wallets
    • Antique Fishing Lures
    • Artwork
    • Coins & Currency
      • Silver Certificates
      • Gold Banknotes
      • Currency
      • Coin Sets
      • Individual Coins
    • Sports Memorabilia
    • CIvil War Relics
    • Drones
    • Native American Artifacts
      • Individual Pieces
      • Groups (Cache)
    • Pens
    • Rare Books
    • Signs & Advertising
    • Stock Certificates
    • Trading Cards
      • Trading Cards: Autographs
      • Trading Cards: Base
      • Trading Cards: Graded
      • Trading Cards: Raw
      • Trading Cards: Pokémon
      • Trading Cards: Sets
    • Sports Memorabilia
    • Vintage Toys
      • Buddy L
      • Ertl Farm Toys
      • GI Joe
      • Masters of the Universe
      • Hot Wheels
      • Lionel Trains
      • Lunch Boxes
      • Marx Toys
      • NASCAR Die-Cast
      • Schleich Toys
      • Star Wars
      • Tonka Trucks
      • Walt Disney Productions
    • Vintage T-Shirts
    • Vinyl Records
    • Watches & Jewelry
    • Workshop
      • Building Hardware
      • Camping & Outdoors
      • Tools
      • PCMCIA Cards
      • RAM Memory
      • Microcontrollers
      • CPUs
      • Laboratory Glassware
  • Connect
You are here: Home / Blog / PayPal XSS Vulnerability (EV SSL)

PayPal XSS Vulnerability (EV SSL)

May 19, 2008 by Cotton Rohrscheib Leave a Comment

PayPal fell victim to a cross-site scripting vulnerability this past week.  Basically it would allow hackers to carry out a few tasks such as stealing credentials from users as well as displaying their own content.  PayPal, in my opinion, has always done a good job in terms of staying up on security risks over the years, especially given the volume that they run through on a daily basis.  I am sure this exploit was probably repaired quickly by PayPal’s technical team but what kind of makes the story interesting to me is the fact that PayPal was running the new EV SSL Certification.  You probably have noticed that while you are on a secure website the URL line of your browser will turn Green to say that everything is okay with the website and your transaction.  Well, apparently the EV SSL isn’t as bulletproof as everyone once thought.  I can remember my partner Greg and I laughing one day at how overrated some of the SSL products are that are on the market today.  This is going to be an interesting story to watch…

For the record, I do believe that having an SSL or EV SSL on an e-commerce website is a great idea, it simply doesn’t mean that a website doesn’t have some underlying security issues, etc., the purpose of the SSL, as I have always seen it, is to provide the end user or customer with assurance that the website they are on is legitimate and not a “fraud or redirection”. 

Source: PayPal XSS Vulnerability Undermines EV SSL Security – Netcraft

Share this post on:

  • Share on Facebook (Opens in new window) Facebook
  • Share on X (Opens in new window) X
  • Share on Reddit (Opens in new window) Reddit
  • Email a link to a friend (Opens in new window) Email
  • Share on LinkedIn (Opens in new window) LinkedIn
  • Share on Pinterest (Opens in new window) Pinterest

Filed Under: Blog Tagged With: EV SSL, PayPal, XSS

About Cotton Rohrscheib

The Cotton Club is a monthly podcast hosted by me, Cotton Rohrscheib. I'm a 52 year old entrepreneur w/ ADHD, OCD (and now AARP) that refuses to grow up as I grow old. I have collaborated and invested in hundreds of projects throughout my career in multiple industries such as; technology, healthcare, and agriculture. I also have 25 years experience in the marketing industry as a co-founder of an award-winning advertising agency. I will undoubtedly cover a wide variety of topics on my podcast while sharing some really crazy stories and situations that I've been fortunate to witness firsthand. I also have a book coming out in 2025 titled, "Mistakes were Made"

Leave a Reply Cancel reply

You must be logged in to post a comment.

  • Email
  • Facebook
  • Instagram
  • LinkedIn
  • Twitter

Recent Updates

  • These are the Hall of Fame Player Cards and Rookies from the “Junk Wax Era” of 1986-1994 that I have in my Raw Card Baseball Collection.
  • Ep035: Cotton Rohrscheib & Mark James Discuss Old School Memphis Wrestling
  • Collecting Classic Southern Rock Vinyl Albums
  • Upcoming Podcast w/ World-Renowned Author & Memphis Wrestling Historian Mark James
  • Monthly Garden Update – May 2026

Blog Categories

  • Blog (450)
  • Collecting (10)
  • Entertainment (380)
  • Faith & Family (155)
  • Farm & Business (305)
  • Health & Wellness (38)
  • Marketing & Tech (595)
  • Podcasts (34)
  • Urban Farming (25)
  • Weekend Projects (16)

Blog Archives

Join the Cotton Club!

 

Content Copyright © 2000-2026
Cotton Rohrscheib | Rohrscheib Capital
Disclaimer | Privacy Policy | Account Manager | View Cart

All opinions expressed on this website are 100% Cotton (see my disclaimer). All content, including text, images, and media, are the intellectual property of Rohrscheib Capital unless otherwise noted. To learn how we use your private information, checkout our privacy policy.