ブックマーク / board.protecus.de (1)

  • Autofill Address Hijacking - Demo

    Google Chrome Autofill Abuse - Obtain private information This page demonstrates how malicious websites may obtain a Chrome user's private information including their name (aliases), addresses, telephone numbers, place of work, etc. by simply abusing Google Chrome's AutoFill functionality. Prefix (*) Mrs. Mr. First name (*) Last name (*) Optained private information These fields are not visible to

    tmatsuu
    tmatsuu 2012/04/13
    Google Chromeの「自動入力」機能を悪用すると、名前だけ入力するフォームに見せかけて住所や電話番号、メールアドレスをぶっこ抜くことができるデモ。「自動入力」はOFFにすべし。
  • 1