Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Clicking to the Past
Chris Wysopal, 2008-10-21

When the first details trickled out about a new attack, dubbed “clickjacking” by the researchers who found it, the descriptions made me think of the tricks I used to pull during penetration tests ten years ago to get administrator privileges: Tricking the user into issuing a command on an attacker’s behalf is one of the oldest attack vectors in the book.

Submit Comment Mode:
Name:
Subject:
Message:
 
  Enter the characters that appear above
 





 

Privacy Statement
Copyright 2009, SecurityFocus