Gareth, David and I went to Microsoft Bluehat v8, it was pretty fun meeting everyone. Gareth described the talk pretty well in here: http://www.thespanner.co.uk/2008/10/20/bluehat/, (slides) anyway I want to show the stuff we didn't showed at Bluehat because of their no-zeroday policy (even if the vendor wasn't willing to patch). So well we have the following clickjacking PoCs, that show different