More Problems for MSN Hotmail

10 Comments
Bennett Haselton, Webmaster of Peacefire.org, has discovered a flaw in one of the most popular e-mail services on the Internet. This flaw would allow a hacker with the correct amount of knowledge and time to download your messages from the server and read your e-mail. Using JavaScript to send a cookie in an HTML attachment, the malicious user could then access the e-mail as long as the person who received the attachment was logged onto MSN Hotmail and the validation code was still active. Haselton told reporters that as little as five minutes is needed to download the messages to another computer.