home.social

#clickjacking — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #clickjacking, aggregated by home.social.

  1. Clickjack attack steals password managers' secrets

    malwarebytes.com/blog/news/202

    This is indeed why I prefer manually copying in my credentials.

    It is good that some vendors have fixed the issue already, but for the others: get into the game soon!

    #passwordmanager #attack #exploit #clickjacking #malwarebytes

  2. Well #PasswordManagers were not as secure as we all thought.
    All Password Managers that use a browser add-on/plugin for auto-fill functionality are susceptible to #ClickJacking security vulnerabilities that could be exploited to steal account credentials.
    It works on all of them:
    #LastPass
    #Bitwarden
    #iCloudPasswords
    #Enpass
    #1Password
    #NordPass
    #ProtonPass
    #Keeper
    #Dashlane
    & yes even the one I use #KeePassXC
    Some have pushed out updates.

    More info: marektoth.com/blog/dom-based-e

    #CyberSecurityNews