Style Attack Vulnerability can lead to hotmail& Yahoo based JS worm.

Code Hotmail & Yahoo Expolit

demo Hijack Passport cookie

demo Steal Hotmail Contact

demo Send Malicious Mail

demo Run IE Exploit ,Run ActiveX

demo Stael User password[fake login],by http-equiv


demo Hijack Yahoo cookie

demo Send Malicious Mail

demo Run IE Exploit

demo Run ActiveX

demo Stael User password[fake login],by http-equiv

Respect to star dust,jp, for finding the hole.
Gretting : Menashe Eliezer,Liu Die Yu,thePull,Jelmer,http-equiv,morning wood, Drew Copley,Shlomo Touboul.