Security News > 2015 > October > Outlook.com had 'classic' XSS flaw in authentication engine (The Register)