It looks like I caught another in-flight modification for one of this blog’s visitor. This one injects the script “http://127.0.0.1:1025/js.cgi?pa&r=” into web pages viewed, and seems to be injected by Check Point’s ZoneAlarm, as part of it’s privacy control settings.
I’ve created a relevant signature, and added it to this blog. It will make it’s way into a future release of the WordPress Web Tripwire Plugin.
Related posts:

No comments
Comments feed for this article
Trackback link: http://blog.yibble.org/2009/05/27/zonealarm-injects-javascript-into-dom/trackback/