Doc's eBay Motors Sucks Blog

Tag Archive: Cross Site Scripting

eBay And Member Security Still Does Not Compute

eBay And Member Security

Another dangerous eBay security vulnerability was recently discovered by researchers. This allows fraudsters using a highly advanced coding technique known as JSfuck, to install malware on unsuspecting members smartphones. We have been observing eBay security vulnerabilities back as far as 2004, examples are Here Here and Here. Why they allow this sloppy security is anyone’s best…
Read more

10 Years Watching eBay Car Scams & Auction Fraud

Medved eBay Auction Chart 03/05/2007

Summary of 10 years watching eBay Auction Fraud and Used Car Scams. Buyers and Sellers were conned out of their money by slick talking fraudsters and bad sellers. These observations destroyed buyer and seller trust and well established community values. It is Doc’s belief, had Meg Whitman taken a stand against fraud and misrepresentation back…
Read more

JavaScript XSS Cross Site Scripting Redirect Caught On Screen Video

eBay XSS Redirect Scam Video 01/20/2014

Watch as this scam listing and 2 others uses an uncorrected XSS Cross Site Scripting Vulnerability and whisks me off to a hacked website. Phishing Fraud and Identity Theft can then occur! Fraudsters hack a website and create a directory just above it’s public root. They then upload their scripts and images etc. Then plant their sucker…
Read more

eBay Suspected Phishing Car Scams 06/21/2013

eBay XSS Redirect Security Vulnerability

These used trucks up for auction on eBay Motors are too good to be true used vehicle deals. Your money will be stolen in the blink of an eye if you swallow the fraudsters sucker bait. We start out with this 2010 Audi A5 2.0L Quattro that just smells phishey (251293192571). Next is this 2006…
Read more

How eBay TRS Seller StupidToy99 Lost $8500

How StupidToy99 Lost $8500 On An eBay Motors Car Scam

Looks like that old eBay XSS Cross Site Scripting Redirect snagged another victim. $8,500 is a lot of money to lose. Cover your butt and be sure a deal is for real! Don’t become another victim of Internet Phishing Fraud! “From this eBay Motors Post: An eBay shooting star TRS power seller stupidtoy99 lost $8500…
Read more

BestAtvStore.com XSS Cross Site Scripting Fraud

best atv store fraud video

This poster on eBay’s Motors Forums claimed he was redirected to www.bestatvstore.com after clicking on an eBay internal link. That sounds like another eBay XSS Redirect that has been uncorrected for many years. Hey John Bodine.. Why don’t you post in one of your eBay forums “we heard you and have fixed that redirect vulnerability.”…
Read more

eBay XSS Redirect Scam Caught On Screen Video

eBay XSS Redirect Security Vulnerability

Watch as this Chevy Tahoe eBay listing redirects me off of eBay Motors to a fraudster controlled website, where someone’s Identity and Money will be stolen! In order to capture this scam on screen video Doc used his Blackberry as an IP Modem to slow the action down. Normally the second you enter the hacked…
Read more