Comment by joshfraser
Comment by joshfraser 7 hours ago
Back in 2013 I discovered that you could use clickjacking to trick someone into buying anything you wanted from Amazon (assuming they were signed in). It took them almost a year to fix the issue. They never paid me a bounty.
https://onlineaspect.com/2014/06/06/clickjacking-amazon-com/
On that note, https://github.com/aws/aws-codedeploy-agent/issues/30