Video Screencast Help
Symantec to Separate Into Two Focused, Industry-Leading Technology Companies. Learn more.
Website Security Solutions

Trust symbols inside the chrome vs. the HTML page

Created: 10 Oct 2007 • Updated: 18 Dec 2012
Tim Callan's picture
0 0 Votes
Login to vote

A recent blog entry by computer journalist Tim Anderson details a security hole in popular British train ticketing site TheTrainLine.com. Tim does a good job of describing the security flaw in which TheTrainLine will sometimes redirect online purchasers to a non-https-protected page and ask for credit card information. Tim also references the difference between security indicators that are inside the chrome of the browser (in this case the green address bar of Extended Validation SSL) and a graphic that is simply placed inside the HTML portion of the page.