<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="bbPress/1.0.2" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom">
	<channel>
		<title>Giveaway of the Day Forums &#187; Topic: Be careful: ClickJacking</title>
		<link>http://www.giveawayoftheday.com/forums/topic/4013</link>
		<description>Giveaway of the Day Forums &#187; Topic: Be careful: ClickJacking</description>
		<language>en-US</language>
		<pubDate>Sun, 12 Feb 2012 07:32:41 +0000</pubDate>
		<generator>http://bbpress.org/?v=1.0.2</generator>
		<atom:link href="http://www.giveawayoftheday.com/forums/rss/topic/4013" rel="self" type="application/rss+xml" />

		<item>
			<title>hotdoge3 on "Be careful: ClickJacking"</title>
			<link>http://www.giveawayoftheday.com/forums/topic/4013#post-43236</link>
			<pubDate>Fri, 10 Oct 2008 09:08:57 +0000</pubDate>
			<dc:creator>hotdoge3</dc:creator>
			<guid isPermaLink="false">43236@http://www.giveawayoftheday.com/forums/</guid>
			<description>&#60;p&#62;&#60;a href=&#34;http://www.adobe.com/support/security/advisories/apsa08-08.html&#34; rel=&#34;nofollow&#34;&#62;http://www.adobe.com/support/security/advisories/apsa08-08.html&#60;/a&#62;&#60;/p&#62;
&#60;p&#62;Flash Player workaround available for &#34;Clickjacking&#34; issue&#60;/p&#62;
&#60;p&#62;To prevent this potential issue, customers can change their Flash Player settings
&#60;/p&#62;</description>
		</item>
		<item>
			<title>hotdoge3 on "Be careful: ClickJacking"</title>
			<link>http://www.giveawayoftheday.com/forums/topic/4013#post-43229</link>
			<pubDate>Fri, 10 Oct 2008 06:11:07 +0000</pubDate>
			<dc:creator>hotdoge3</dc:creator>
			<guid isPermaLink="false">43229@http://www.giveawayoftheday.com/forums/</guid>
			<description>&#60;p&#62;add no script, flash block click to turn on info at Firefox.
&#60;/p&#62;</description>
		</item>
		<item>
			<title>copmom on "Be careful: ClickJacking"</title>
			<link>http://www.giveawayoftheday.com/forums/topic/4013#post-43185</link>
			<pubDate>Thu, 09 Oct 2008 14:52:31 +0000</pubDate>
			<dc:creator>copmom</dc:creator>
			<guid isPermaLink="false">43185@http://www.giveawayoftheday.com/forums/</guid>
			<description>&#60;p&#62;I just went to firefox and installed the 'no script' plug in for this.. thanks for the heads up!
&#60;/p&#62;</description>
		</item>
		<item>
			<title>my_name_is_brad on "Be careful: ClickJacking"</title>
			<link>http://www.giveawayoftheday.com/forums/topic/4013#post-43178</link>
			<pubDate>Thu, 09 Oct 2008 10:15:53 +0000</pubDate>
			<dc:creator>my_name_is_brad</dc:creator>
			<guid isPermaLink="false">43178@http://www.giveawayoftheday.com/forums/</guid>
			<description>&#60;p&#62;you and I must be on the same page....i came across the same article today.&#60;/p&#62;
&#60;p&#62;Basically 'clickjacking&#34; is nothing new. It's just a new way to go about it. basically what is happening more often than not is just people using javascript to override default actions.&#60;/p&#62;
&#60;p&#62;It is very easy to dupe button clicks. in JavaScript each action a user takes gets an event attached to it.  Now with a hidden frame, or in some cases a flash or java applet, you can overide the default events.&#60;/p&#62;
&#60;p&#62;For example, clicking a link raises an onClick, and onUnload event in many browsers.  Now it is quite simple to override those events, and there are legit reasons to do so. Visit most government sites and you will be presented with a page that says you are leaving the site if you click a link to an external site.&#60;/p&#62;
&#60;p&#62;a few rules of thumb&#60;/p&#62;
&#60;p&#62;1) always check the links that may require sign in&#60;br /&#62;
2) never follow any link that asks you for ANY personal info....even if it's on the next page&#60;br /&#62;
3) set your web cam settings to not be activated by flash (fairly minor risk, but can happen)&#60;br /&#62;
4) probably most important.....ALWAYS ALWAYS ALWAYS shut down and restart your browser before accessing ANY banking info.&#60;br /&#62;
5) just be smart.  If it looks odd assume it is
&#60;/p&#62;</description>
		</item>
		<item>
			<title>LeKanaw on "Be careful: ClickJacking"</title>
			<link>http://www.giveawayoftheday.com/forums/topic/4013#post-43177</link>
			<pubDate>Thu, 09 Oct 2008 09:23:27 +0000</pubDate>
			<dc:creator>LeKanaw</dc:creator>
			<guid isPermaLink="false">43177@http://www.giveawayoftheday.com/forums/</guid>
			<description>&#60;p&#62;&#60;strong&#62;Bonjour Everybody :*)&#60;/strong&#62;&#60;/p&#62;
&#60;p&#62;A new type of attack has been &#60;em&#62;discovered&#60;/em&#62; called ClickJacking.&#60;br /&#62;
To know more&#60;br /&#62;
• Read the &#60;a href=&#34;http://news.cnet.com/8301-1009_3-10061358-83.html?part=rss&#38;#38;subj=news&#38;#38;tag=2547-1_3-0-20&#34;&#62;CNet&#60;/a&#62; article.&#60;/p&#62;
&#60;p&#62;• Here a more detailed &#60;a href=&#34;http://hackademix.net/2008/09/27/clickjacking-and-noscript/&#34;&#62;article&#60;/a&#62; about all this.&#60;/p&#62;
&#60;p&#62;• There is a demonstration of the attack [even though I must say I didn't quite get what they were trying to show ...] on &#60;a href=&#34;http://www.youtube.com/watch?v=gxyLbpldmuU&#34;&#62;YouTube&#60;/a&#62;&#60;/p&#62;
&#60;p&#62;• And for those of us ridding The Fox, look into your NoScript settings, under the &#34;Plug-Ins&#34; tab.&#60;/p&#62;
&#60;p&#62;Hope this helps
&#60;/p&#62;</description>
		</item>

	</channel>
</rss>

