The hack works by exploiting a flaw in the IE security zones feature, a feature which can be used to tell users which sites are malicious and which are trustworthy. The hacker embeds a special iframe tag in the malicious website and the browser exposes the cookies on the victim’s computer once the user does that drag and drop thing.
More and sourceThe hack isn’t really that easy. First, the hacker must somehow make the user drag and drop an object across the computer’s screen. It would be quite a bit suspicious if somebody randomly asks you to do that, so Valotta devised a way to make people do this without arousing suspicion. He created a puzzle challenging users to ‘undress’ a photo of a beautiful woman and posted it on his Facebook account. He got 80 cookies within just three days -- and he only had 150 friends..


2Likes
LinkBack URL
About LinkBacks
.






Reply With Quote


.
.