JMH
Banned
- Local time
- 3:24 AM
- Messages
- 6,448
More...Mozilla's Creative Lead for Firefox, Aza Raskin, has devised a new phishing method that capitalizes on users' lack of attention to the order and content of their browser's tabs. Called "tabnabbing," the attack uses JavaScript to alter the content of a page opened in a browser tab, when the user moves away from it.
"Most phishing attacks depend on an original deception. If you detect that you are at the wrong URL, or that something is amiss on a page, the chase is up. You’ve escaped the attackers. In fact, the time that wary people are most wary is exactly when they first navigate to a site. What we don’t expect is that a page we’ve been looking at will change behind our backs, when we aren’t looking. That’ll catch us by surprise," Mr. Raskin, explains on his blog.
The attack proposed by the design expert has a Web page detect when the user changes focus from it and deceptively change its appearance. The booby-trapped page doesn't even have to be a rogue one. It can be part of a legit website that has been compromised via a technique that allows code injection.
Mozilla Expert Describes New Phishing Method - Dubs the attack "tabnabbing" - Softpedia
My Computer
- Computer Manufacturer/Model Number
- LAPTOP. HP Pavilion dv7-4010TX .
- OS
- Win 7 Ultimate 64-bit. SP1.
- CPU
- Intel i7 -720QM.[1.6GHz Turbo Boost 2.8GHz. 6MB Cache.]
- Memory
- 8 DDR 3 RAM. 1066MHZ
- Graphics Card(s)
- ATI 1024 MB. DDR3. Radeon HD5650
- Monitor(s) Displays
- 17.3" High Definition Brightview LCD. LED Backlit.
- Screen Resolution
- 1600 x 900.
- Hard Drives
- 640GB
- Case
- Laptop / notebook.
- Mouse
- Logitech Anywhere mouse. MX.
- Internet Speed
- ADSL [ but too slow ]