> From: Peter Rdam [mailto:hell@weedmail.com] > They didnt reacted, and im pretty curious about what > is possible with the bug. And i actually hope that > someone can tell me about it and maybe Microsoft will > do something about it.. It's very simple, you can inject arbitrary scripting to be executed by the user in the context of hotmail. This means that you can e.g. steal his cookies or, if he's logged in, write emails from his account, delete his mails and change his password. Regards Thor Larholm Jubii A/S - Internet Programmer