Their research is available in an OWASP presentation at http://www.owasp.org/images/0/0e/OWASP_AppSec_Research_2010_Busting_Frame_Busting_by_Rydstedt.pdf. Their conclusions were that all frame busting code out there can be broken. Defenses to the attack are in the works, but are not widely adopted. Furthermore, their research showed that very few mobile sites utilize frame busting techniques. In all, preventative measures should be employed as part of your defense in depth approach to securing your Web applications, but not relied upon solely.