Register
Results 1 to 2 of 2
  1. #1
    Admin Assistant
    gmb45's Avatar
    Join Date
    Nov 2008
    Location
    park bench, hedge bottom, police cell
    Posts
    7,501
    Thanks Thanks Given 
    916
    Thanks Thanks Received 
    2,897
    Thanked in
    896 Posts

    Default Web bug reveals browsing history

    hmmmm


    ~~~~ sites are among those hijacking the history files of visitors to their sites.

    ~~~~ sites are among the top users of a browser bug that reveals all the places people go online, finds research.

    Carried out by computer science researchers at UC San Diego the study found 485 sites exploiting the bug.

    The flaw gives sites access to all the other sites that user has visited. Many use it to target ads or see if users are patronising rivals.

    The researchers said their work showed a need for better defences against history tracking.

    The bug exploits the way that many browsers handle links people have visited. Many change the colour of the text to reflect that earlier visit.

    This can be abused with a specially written chunk of code sitting on a website that interrogates a visitors browser to see what it does to a given list of websites.

    Any displayed in a different colour are judged to be those a user has already seen.

    A survey of 50,000 of the webs most visited websites by the team from UC San Diego found 485 sites using this method to get at browser histories, 63 were copying the data it reveals and 46 were found to be "hijacking" a user's history.

    The most popular site that uses the technique is adult site You~~~~. Many other ~~~~ sites use it too as well as sports, news, movies and finance websites.

    The researchers also looked at other popular techniques that sites use to map and monitor what visitors do. Some, such as YouTube, run scripts that track the trail a user's mouse pointer takes on and across pages.

    "Our study shows that popular Web 2.0 applications like mashups, aggregators, and sophisticated ad targeting are rife with different kinds of privacy-violating flows," wrote the researchers.

    The researchers pointed out that some modern browsers, such as Chrome and Safari, are not vulnerable to history hijacking and that the most recent version of Mozilla has closed the loophole. Users of Internet Explorer can defeat the bug by turning on "private browsing".

    Users can also check how much information they are leaking by visiting a webpage set up by security researchers that tries to grab their history.

    Despite these safeguards, the researchers said there was a "pressing need to devise flexible, precise and efficient defenses" against the history hijacking technique.

    The research team is now planning more in-depth work that it hopes will result in tools that will more comprehensively defend against attempts to exploit the bug.
    ------------------------------------------------------------------
    BBC News - Web bug reveals browsing history
    support mountain resue

    support digital-kaos here


    forum rules

    no keygens or torrents to be posted no autodata discussions

    pish pt walkers



  2. #2
    V.I.P. Member
    Meat-Head's Avatar
    Join Date
    Oct 2009
    Location
    Meatheadshire (Between London and Scotland)
    Posts
    31,903
    Thanks Thanks Given 
    8,821
    Thanks Thanks Received 
    6,052
    Thanked in
    4,769 Posts

    Default

    VER VERY LATE FOR WORK

    often see on prono sites thing pop up says "checking favarites and history" - oops

    Was Banned For Being Certifiably Insane and Stupid

 

 

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
This website uses cookies
We use cookies to store session information to facilitate remembering your login information, to allow you to save website preferences, to personalise content and ads, to provide social media features and to analyse our traffic. We also share information about your use of our site with our social media, advertising and analytics partners.