This link appeared in WDRL 148 on .
New attack steals SSNs, e-mail addresses, and more from HTTPS pages
Mathy Vanhoef and Tom Van Goethem presented a new HEIST-attack on HTTPS pages to steal SSNs, email addresses, and more. You can view the slides [pdf], or read the write-up [pdf] to understand the attack and what you can do to prevent it.