So it appears that some ad networks, including Interclick, have already operationalized the collection of data from the CSS bug which allows sites to harvest your browser history. I am only surprised that it took so long before someone got caught using this.
As these things often seem to do these days, the trail led back to an ad network. Interclick.com was one of three ad networks found to be deploying this tracking script on websites.