The Real World Clickjacking

Release Date: 2009-02
Hakin9_2_2009_en
Rating: 2 votes

Source files



Articles

  • FREE ISSUE: The Real World Clickjacking 02/2009

  • Metasploit Alternate Uses for a Penetration Test

    The Metasploit Framework is a program and subproject
    developed by Metasploit LLC. It was initially created in 2003 in the
    Perl programming language, but was later completely re-written
    in the Ruby Programming Language.


  • Backdooring Frameworks

    More and more developers use frameworks for web application
    development and take advantage of ready for use components.
    But frameworks can be easily backdoored, and we want to
    demonstrate how it is possible and what happens when it occurs.


  • The Real World Clickjacking

    This article will show you the new technique of web attack. You
    will get to know how easily common users clicks on a web
    site can be stolen. Description of this technique will help you
    to understand this process and present you the difficulties in
    protecting yourself from it. Believe me it is not easy.


  • Apple Super Drive. Set It Free

    Last year Apple came out with MacBook Air and with it a CD/DVD
    reader and writer for the smallest Personal Computer in the world.


  • Mapping HTTP Interface Embedded Devices

    This paper discusses the generic approach of detecting the HTTP
    interface of embedded devices. These devices perform a number
    of different functions based on the infrastructural need.


  • How Does Your Benchmark of Physical Security Affect Your Environment?

    Many of us are familiar with the equation: Risk = Threat x
    Vulnerability x Consequence and we have also learned that in
    order to make the most sense of that equation we must define,
    and then weigh, those three variables.


  • iPhone Forensics

    Gangsters, hoodlums, and a variety of nightlife users love
    iPhones. If you want to be a successful street user owning an
    iPhone is an absolute necessity. While this is bad for all who are
    robbed of their iPhones, law enforcement benefits greatly due to
    the iPhone’s vulnerability to forensics.


  • Safer 6.1

    Microsoft’s Windows Mobile currently dominates the mobile
    computing market, and thus is under permanent attack from new
    (Google’s Android) and old (Symbian, Palm OS) competitors. In an
    attempt to keep its market position secure, Microsoft decided to tackle
    the topic of corporate device management.


  • Making Open Security Research Sustainable

    The Open Source Business Model is broken and needs reworking? We’re all on the path to eventual failure and obscurity? I think not, but there are changes to be made.


  • Interview with Raffael Marty

    Raffael Marty is a Chief Security Strategist and Director of Product Management at Splunk. As customer advocate and guardian – he focuses on using his skills in data visualisation, log management, intrusion detection, and compliance. He has built numerous log analysis systems and implemented use-cases for hundreds of customers that deal with log management challenges on a daily basis.


  • Self exposure with...

    Mary Ellen Kennel, Martin McKeay


  • ENGARDE SECURE LINUX

    Engarde Secure Linux, out of the box Linux distribution built for what the name says, Secure (security). Engarde Secure Linux does just that for your server with easy to setup user restrictions, trusted hosts, Firewall protection etc via the GDWT (Guardian Digital WebTool).


  • Analyzing Malware

    This article is an introduction to analyzing malware. I will take you through the basic steps you need to perform in order to understand what malware is doing to your systems.


Back

Comments

259 comments, Add comment
Add comment

Advertisement