Tag Archive for: hijack

How script kiddies can hijack your browser to steal your password

A demonstration showing a site that hijacks a browsers search function and intercepts the contents.

Be careful what you type on your computer while surfing the Web. It very well could be funneled to a script kiddie who has appropriated a handful of lines of code and inserted it into his site.

The hack has been possible for years, but two proofs of concept published this month graphically demonstrate just how easy it is for even savvy people to fall for it. Both demonstrations use JavaScript to hijack the search command found in all standard browsers. The script is activated when a user presses the ctrl+f or ⌘+f keys, causing whatever is typed after that to be sent to a server under the control of the website operator rather than to the browser’s search box.

Proofs of concept here and here show how this method could be used to trick people into divulging their password or credit card number respectively. The pages pose as lists that catalog leaked user data and invite visitors to search it to see if their information is included.

Read 7 remaining paragraphs | Comments


Ars Technica » Technology Lab

Spyware Matching FinFisher Can Take Hijack IPhones – Businessweek


Newsday

Spyware Matching FinFisher Can Take Hijack IPhones
Businessweek
The findings — which are consistent with Gamma's own promotional materials for a FinFisher product called FinSpy Mobile — illustrate how the largely unregulated trade in offensive hacking tools is transforming surveillance, making it more intrusive
Citizen Lab discovers mobile malware: FinFisher spyware variants target Network World (blog)

all 11 news articles »

finspy – read more

GSM phones vulnerable to hijack scams: researcher – Reuters


CANOE

GSM phones vulnerable to hijack scams: researcher
Reuters
Nohl is a well-regarded expert on mobile security who last year identified a bug in GSM technology that makes calls vulnerable to tapping. He says he is calling attention to these flaws to pressure the industry into beefing up the security of their
GSM users are prone to hackingThe Mobile Indian
Cellphones vulnerable to hacking, study saysBend Bulletin

all 165 news articles »

“mobile security” – read more

Student’s Android app could hijack computers – msnbc.com

A young Israeli security researcher has developed a new free Android app tool that, in the wrong hands, could give novice hackers a chance to launch attacks and hijack targeted computers with the simple push of a button. The “Anti” app, short for Android …
Read more