<?xml version="1.0" encoding="utf-8"?>
<feed xml:lang="en-us" xmlns="http://www.w3.org/2005/Atom"><title>Simon Willison's Weblog: amazonfail</title><link href="http://simonwillison.net/" rel="alternate"/><link href="http://simonwillison.net/tags/amazonfail.atom" rel="self"/><id>http://simonwillison.net/</id><updated>2009-04-14T08:32:40+00:00</updated><author><name>Simon Willison</name></author><entry><title>Amazon Says Listing Problem Was an Error, Not a Hack</title><link href="https://simonwillison.net/2009/Apr/14/amazon/#atom-tag" rel="alternate"/><published>2009-04-14T08:32:40+00:00</published><updated>2009-04-14T08:32:40+00:00</updated><id>https://simonwillison.net/2009/Apr/14/amazon/#atom-tag</id><summary type="html">
    
&lt;p&gt;&lt;strong&gt;&lt;a href="http://www.pcworld.com/businesscenter/article/163042/amazon_says_listing_problem_was_an_error_not_a_hack.html"&gt;Amazon Says Listing Problem Was an Error, Not a Hack&lt;/a&gt;&lt;/strong&gt;&lt;/p&gt;
“A friend within the company told him that someone working on Amazon’s French site mistagged a number of keyword categories, including the ’Gay and Lesbian’ category, as pornographic, using what’s known internally as the Browse Nodes tool. Soon the mistake affected Amazon sites worldwide.”

    &lt;p&gt;&lt;small&gt;&lt;/small&gt;Via &lt;a href="http://simonwillison.net/2009/Apr/13/amazonfail/#c44124"&gt;Chris Shiflett&lt;/a&gt;&lt;/small&gt;&lt;/p&gt;


    &lt;p&gt;Tags: &lt;a href="https://simonwillison.net/tags/amazon"&gt;amazon&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/amazonfail"&gt;amazonfail&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/csrf"&gt;csrf&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/security"&gt;security&lt;/a&gt;&lt;/p&gt;



</summary><category term="amazon"/><category term="amazonfail"/><category term="csrf"/><category term="security"/></entry><entry><title>How to cause moral outrage from the entire Internet in ten lines of code</title><link href="https://simonwillison.net/2009/Apr/13/amazonfail/#atom-tag" rel="alternate"/><published>2009-04-13T19:48:53+00:00</published><updated>2009-04-13T19:48:53+00:00</updated><id>https://simonwillison.net/2009/Apr/13/amazonfail/#atom-tag</id><summary type="html">
    
&lt;p&gt;&lt;strong&gt;&lt;a href="http://community.livejournal.com/brutal_honesty/3168992.html"&gt;How to cause moral outrage from the entire Internet in ten lines of code&lt;/a&gt;&lt;/strong&gt;&lt;/p&gt;
Looks legit—the author claims to have sparked this weekend’s #amazonfail moral outrage (where Amazon where accused of removing Gay and Lesbian books from their best seller rankings) by exploiting a CSRF hole in Amazon’s “report as inappropriate” feature to trigger automatic takedowns. EDIT: His claim is disputed elsewhere (see comments)


    &lt;p&gt;Tags: &lt;a href="https://simonwillison.net/tags/amazon"&gt;amazon&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/amazonfail"&gt;amazonfail&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/csrf"&gt;csrf&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/prdisaster"&gt;prdisaster&lt;/a&gt;, &lt;a href="https://simonwillison.net/tags/security"&gt;security&lt;/a&gt;&lt;/p&gt;



</summary><category term="amazon"/><category term="amazonfail"/><category term="csrf"/><category term="prdisaster"/><category term="security"/></entry></feed>