Jannik Anker

.NET developer blog
posts - 197, comments - 14, trackbacks - 46

My Links

News



www.flickr.com
This is a Flickr badge showing photos in a set called Bornholm with a DSLR. Make your own badge here.

Article Categories

Archives

Post Categories

ASP.NET

Blogs

C#

MCMS

Personal web sites

SharePoint

Be careful with Ctrl-C

Via Stefan Goßner:

[From a mail thread] Data stored in clipboard can be accessed by a malicious website through a combination of Javascripts and server side code (like ASP, ASP.NET, PHP, CGI, ...).
Just try this:
  1. Copy any text by ctrl+c
  2. Click the Link: http://www.friendlycanadian.com/applications/clipboard.htm
  3. You will see the text you copied on the Screen which was accessed by this web page.
A malicious websites can easily steal sensitive data (like passwords, creditcard numbers, PIN etc.) stored in your clipboard while surfing the web. To prevent this you should change the security setting Allow paste operations via script for at least the Internet Zone in Internet Explorer to Prompt. Per default this setting is set to Enabled.

Print | posted on Friday, October 14, 2005 11:17 AM | Filed Under [ IE ]

Feedback

Gravatar

# re: Be careful with Ctrl-C

Wow! this is a great post thanks for letting us know. I was not aware of this.
10/14/2005 1:18 PM | ET
Gravatar

# re: Be careful with Ctrl-C

Or you could surf using Firefox. :)
10/14/2005 4:37 PM | Chris Slatt
Post A Comment
Title:
Name:
Email:
Website:
Comment:
Verification:
 
 

Powered by: