Language Selection

English French German Italian Portuguese Spanish

How To Stop Firefox Clickjacking Exploit Attack

Filed under
Security

Really scary exploit attack in wild, which affects all browsers under any desktop operating systems including MS IE, Linux, Apple safari, Opera, Firefox and Adobe flash. Any website that uses CSS, flash and IFRAME (used to serve ads) can be used to attack on end users. Attacker is able to take control of the links that your browser visits. From the article:

In a nutshell, it’s when you visit a malicious website and the attacker is able to take control of the links that your browser visits. The problem affects all of the different browsers except something like lynx. The issue has nothing to do with JavaScript so turning JavaScript off in your browser will not help you. It’s a fundamental flaw with the way your browser works and cannot be fixed with a simple patch. With this exploit, once you’re on the malicious web page, the bad guy can make you click on any link, any button, or anything on the page without you even seeing it happening.

According to victims on several Web forums, the attack is coming from Adobe Flash-based advertising on legitimate sites — including Newsweek, Digg and MSNBC.com.

How do I stop Clickjacking under Firefox?




More in Tux Machines

Open source data integration with Karma

Karma is a free, an open source data integration tool that makes it easy to convert data from a variety of formats into linked data. I recently attended a half-day workshop on Karma with Pedro Szekely, our instructor. He started by warning us that he knows very little about libraries, but a ton about data. The files we needed for the workshop were on GitHub, if you’re interested in checking it out. You can follow the tutorial steps on the Wiki, and, of course, you can find Karma itself on GitHub. Read more

Linux Kernel 2.6.32.66 LTS Brings x86, Networking, and File Systems Improvements

Willy Tarreau, the maintainer of the 2.6 kernel branch, announced a few minutes ago the immediate availability for download of the sixty-six maintenance release of Linux kernel 2.6.32 LTS. Read more

elementary OS "Freya" Finally Gets Custom Keyboard Shortcuts

elementary OS "Freya" has been out for some time now, but developers are still adding features to it despite the fact that it has been dubbed stable. Now, users have the option to define custom keyboard shortcuts, which was a very sought after feature. Read more

A Linux proud history – 15 years ago and the Brazilian ATM

The history i want to share with you is how that “marble Tux” happens. Yes, it was a production machine that you see in the picture and was running in every place in Brazil for at least 10 years. So, a 25 years old boy, in this case me, the guy typing now, who was working in a ILOG graphical toolkit partner suddenly decide to look for Linux jobs, it was out of university for 1 year, but was already infected for the open source and Linux for more than 3 years, and thought it can be done. Read more