| http://www.w3.org/ns/prov#value | - Simple, right?Here is an example of a more complex and malicious JS I found on FB:The strings in the JS are all hex encoded, below is the unescaped version:This JS generates an Facebook invite message to your friends with the message containing an IFrame to: bit.ly/9CxGhY?82Visiting this shortened link, shows that Bit.Ly is aware of the abuse and warning users from following:The shortened link was
|