Social Engineering Link
Well, eventully, i started play around with some JS.
I suppose this method is rather old, but i havn't seen it around (strangely)..
The exploit is a simple javascript "onclick" event on an "<a>" tag, which changes the "href" value to another site.
<a href="http://www.good.com" onclick="this.href='http://www.evil.com';">
http://www.good.com</a>
And here's the proof of concept: http://www.good.com enjoy!

Hey, I'm Fredrik. I'm from Sweden, born 1990, and I got a huge interest for information technology and information security. So far, I've been studying for three years at the Internation IT College of Sweden and one year at the Royal Institute of Technology (Kista, Sweden). I'm one of the Co-Founders of Detectify. I'm working closely together with the swedish firm Young & Skilled. ...Not to forget, I'm the previous founder of Arctic Security. If you wish to contact me, please email me at h@ackack.net or follow me on twitter @Almroot.