clickjacking

Busting Frame Busting a Study of Clickjacking Vulnerabilities on Popular Sites

By , , ,   @W2SP 2010
0 reaction(s) | 2405 downloads
We study frame busting defense for the Alexa Top-500 sites and show that all can be broken. Some attacks are browser-specific, other exploit code mistakes. We conclude with practical recommendations how to implement a secure frame busting defense.
Downloads
paper
slides
You might also like reading

Clickjacking 2010

Framing Attacks on Smartphones Dumb Routers and Social Sites Tap-jacking Geo-localization and Framing Leak Attacks

Blog 2011

What Phishing Sites Look Like Study

Mobile 2012

SessionJuggler Secure Web Login from an Untrusted Terminal Using Session Hijacking

Embedded devices 2009

XCS cross channel scripting and its impact on web applications

Web security 2010

An Analysis of Private Browsing Modes in Modern Browsers

Comments
About me
Researcher at Google, specializing in Internet security and privacy.
Latest blog posts
Latest social News
Confession of a reformed hacker - http://t.co/izoNn9M5yq < interesting stuff on botnets and credit cards.#security#seo#fraud#web
After Twitter turn on 2 steps authentication, Kim Dotcom claims to have invented - http://t.co/NYf3ajtkVr#security#twitter#fb#seo
What Your Facebook Profile Photo Says About You - http://t.co/THHqZQxFem#fb#twitter#psych#smo#seo#privacy
Emotion color guide. Awesome ! What is your color? :)#design#web#art#ux http://t.co/bndVZysO5t
When a porn site masquerades as the Apple App Store - http://t.co/x3r0UKGUlX#ios#apple#security#seo#mobile
Share me!