Author Topic: Windows 8 keyjacking attack discovered  (Read 811 times)

0 Members and 2 Guests are viewing this topic.

Offline Axon

  • VIP
  • King
  • *
  • Posts: 2047
  • Cookies: 319
    • View Profile
Windows 8 keyjacking attack discovered
« on: July 02, 2013, 10:58:10 am »
By John Leyden, 1st July 2013

Quote
A security researcher has discovered a sneaky social engineering trick that might be used to disguise the go-ahead to run hostile code on Windows 8 machines. The so-called keyjacking technique, uncovered by Italian security researcher Rosario Valotta, is similar to clickjacking. However, instead of fooling marks into generating fake Facebook likes, the keyjacking involves disguising a "run executable" dialogue box within a CAPTCHA challenge.


Code: [Select]
http://www.theregister.co.uk/2013/07/01/keyjacking_attack_targets_letter_r_captchas/

The awesomeness of windows  ::)
« Last Edit: July 02, 2013, 11:00:46 am by Axon »

Offline Darkvision

  • EZ's Fluffer
  • VIP
  • Royal Highness
  • *
  • Posts: 755
  • Cookies: 149
  • Its not a bug, It's a Chilopodas.
    • View Profile
Re: Windows 8 keyjacking attack discovered
« Reply #1 on: July 02, 2013, 11:21:58 am »
good article. got to love how this stuff evolves
The internet: where men are men, women are men, and children are FBI agents.

Ahh, EvilZone.  Where networking certification meets avian fecal matter & all is explained, for better or worse.

<Phage> I used an entrence I never use

Offline Pak_Track

  • Royal Highness
  • ****
  • Posts: 762
  • Cookies: 69
  • Paratrooper
    • View Profile
    • My Home
Re: Windows 8 keyjacking attack discovered
« Reply #2 on: July 02, 2013, 12:19:05 pm »
I'm very surprised. Microsoft, being a popular company, should atleast have some skilled people. This is so stupid, it makes me think the NSA bought Microsoft very secretly  :P

'Life is but a series of conflicts between the easy way and the right way.'
The more you know, the more you'll realize you know nothing. -Snayler
The problem with being a smart motherfucker is that sometimes the stupid motherfuckers think you're a crazy motherfucker.
dont u hate it when you offer help and the other person says yes -Pakalu Papito

Offline vezzy

  • Royal Highness
  • ****
  • Posts: 771
  • Cookies: 172
    • View Profile
Re: Windows 8 keyjacking attack discovered
« Reply #3 on: July 02, 2013, 01:52:29 pm »
This is so stupid, it makes me think the NSA bought Microsoft very secretly  :P

I can't believe it took you this long to figure it out.
Quote from: Dippy hippy
Just brushing though. I will be semi active mainly came to find a HQ botnet, like THOR or just any p2p botnet