Printed from http://www.electronista.com

Research shows Internet Explorer open to 'cookiejacking'

updated 07:55 pm EDT, Wed May 25, 2011

All sites said to be vulnerable

An independent security researcher, Rosario Valotta, suggests Internet Explorer is vulnerable to attacks that target the private data stored in HTTP cookies. The flaw is said to leave users open to what Valotta calls "cookiejacking," a method that hackers can reportedly use to access a cookie and log into victims' various online accounts.

The vulnerability is said to require users to drag and drop an item across the screen. Volatta claims to have created a Facebook app that exploits the flaw by requiring users to virtually undress a woman, enabling him to amass 80 cookies from his total list of just 150 friends.

Microsoft suggests the requirement for user interaction is unlikely to be used in an actual hacking scenario, company spokesman Jerry Bryant told Reuters.

The vulnerability is said to potentially affect all versions of Internet Explorer running on any Windows edition.



By Electronista Staff
Post tools:

TAGS :

toggle

Comments

Login Here

Not a member of the MacNN forums? Register now for free.

toggle

Network Headlines

toggle

Most Popular

Sponsor

Recent Reviews

Dell AD211 Bluetooth speaker

For all of the high-priced, over-engineered Bluetooth speakers in the electronics market, there is still room for mass-market solution ...

VisionTek 128GB USB Pocket SSD

USB flash drives dealt the death blow to both the floppy and Zip drives. While still faster than either of the old removable media, sp ...

Kodak PixPro SL10 Smart Lens Camera

Smartphone imagery still widely varies. Large Megapixel counts don't make for a good image, and the optics in some devices are lacking ...

Sponsor

toggle

Most Commented

 
toggle

Popular News