[thelist] Cross-Domain cookies

John Handelaar john at evolt.org.uk
Tue Jun 24 01:24:10 CDT 2003


> -----Original Message-----
> From: thelist-bounces at lists.evolt.org
> [mailto:thelist-bounces at lists.evolt.org]On Behalf Of Jeff Howden
> Sent: 24 June 2003 05:41
> To: thelist at lists.evolt.org
> Subject: RE: [thelist] Cross-Domain cookies
>
> sorry, but security restrictions will never allow this to happen.  imagine
> the possibilities if barnesandnoble.com could read your
> amazon.com cookie or
> aol.com could read your microsoft.com cookie.

Grabbing the GUID portion of that cookie from Microsoft
is relatively simple, and it's how MS itself deliberately
subverts the 'no cross-domain cookies' rule.

<http://www.newmediawhore.com/article.php?story=20010518172000930&mode=print
>

[Caution:  old article]

------------------------------------------
John Handelaar

T +44 20 7609 2214       M +44 7930 681789
F +44 870 169 7657   E john at userfrenzy.com
------------------------------------------



More information about the thelist mailing list