Administrators daredevil Posted June 1, 2011 Administrators Posted June 1, 2011 Internet Explorer was found to have a flaw that allows hackers to steal cookies to access their accounts on some websites. The bug was found by a security researcher Rosario Valotta who said it could let hackers steal credentials to access FaceBook, Twitter and other websites. "Any website. Any cookie. Limit is just your imagination," said Valotta, an independent Internet security researcher based in Italy. Hackers can exploit the flaw to access a data file stored inside the browser known as a "cookie," which holds the login name and password to a web account, Valotta said via email As a perpetrator access the cookie they can use it to access the same site concludes Valotta who dubs the technique as "cookiejacking." The vulnerability affects all versions of Internet Explorer, including IE 9, on every version of the Windows operating system. To exploit the flaw, the hacker must persuade the victim to drag and drop an object across the PC's screen before the cookie can be hijacked. While it may sound like a difficult task, Valotta said he was able to do it fairly easily. He built a puzzle that he put up on Facebook in which users are challenged to "undress" a photo of an attractive woman. "I published this game online on FaceBook and in less than three days, more than 80 cookies were sent to my server," he said. "And I've only got 150 friends." Source. Quote
Chuckun Posted June 1, 2011 Posted June 1, 2011 By the way.. I can do this with any browser.. (have never tried with chrome) All browsers store cookies, and all of them can be copied and/or forged from another PC.. Or am I missing something? :/ Edit: my bad, I missed the section explaining the hacker could retreive them with no access to the users system. Impressive! Quote
Fargwire Posted June 1, 2011 Posted June 1, 2011 Very interesting, according to this nothing is really safe at all. Makes you feel very vulnerable. Quote
Chuckun Posted June 1, 2011 Posted June 1, 2011 If you use IE, this is just one of many worries you should have in mind Quote
Administrators daredevil Posted June 1, 2011 Author Administrators Posted June 1, 2011 In short stop using IE 9 till they release fix for it Quote
Administrators JoeDirt Posted June 1, 2011 Administrators Posted June 1, 2011 I can get more data then that in a Starbucks or any place that has open wifi, doesn't matter which browser you use. Also its easier to infect ppl's computers with spyware. I was reading an interesting article on Apple and malware today made me lol. Also that guy has 80 retarded friends Quote
SickOne Posted June 2, 2011 Posted June 2, 2011 Whats Malware? Signed, Apple User There is also malware for Macs . . . Quote
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.