Here's the details
http://secunia.com/multiple_browsers...ability_t est
It's really fucked up that people are allowed to steal like this. But I guess what might be worse than the thieves are the people that blindly pay them and go about their business.
There's another follow up to the IE browser cross-site scripting vulnerability. But it's not a big deal...just gives these fuckers a way to spoof credit card sign up pages.