Archive

Archive for October 12, 2008

The Rise of Clickjacking

Before the name “clickjacking” was invented, most researchers already knew and had already seen this attack. As Schneier described, Clickjacking” is a stunningly sexy name. But on the other side, this is a great job for making such name that is not as technical as CSRF (Cross-site Request Forgery) – there’s something in that name that everyone can easily relate and understand (hijacking, carjacking..). With this massive buy-in, comes a spreading news and awareness to everyone.

Further reading:

Explanation of Clickjacing from Jeremiah Grossman

ClickJacking with PoC Demo

Adobe Advisory on “Clickjacking”

Interesting Example from BreakingPoint Labs

Security In Public Places

It looks funny but it is catchy and make sense! This is one of the top materials uploaded from ISC2 Cyber Exchange website  in relation with National Cyber Security Awareness Month.

October is National Cyber Security Awareness Month as is actively participated by different organization such as StaySafeOnline.org, US-CERT, Microsoft and many others.

Help make cyber world safe!

Follow

Get every new post delivered to your Inbox.