From the page: "Researchers at IBM have released proof-of-concept code for a new generation of Web threats that can attack the underlying operating system as well as other applications running on the compromised Web server. Called cross-environment hopping (CEH) by IBM, the attack uses any cross-site scripting vulnerability in the Web application to jump (or âoehopâ) to another environment running on that same machine." - dan