Jeremiah Grossman: New Flash XSS technique (thousands of websites at risk)
- Move Flash files to a secondary domain – just as is recommended with all third-party / user generated / untrusted content. This solution has promise as it sets up some domain barriers in the event a vulnerable Flash file shows up linked from your website.

No comment on this link yet. React !