Facebook Beacon Blocker

Monday, January 26th, 2009

Facebook Beacon is part of Facebook’s advertising efforts. It is basically a cooperation with 44 partner sites who execute JavaScript code on their website sending specific user information to Facebook. Examples would be the popular gaming portal Kongegrate which send information about played games to Facebook, movie reviews published at ...

Reveal TinyURL Links

Thursday, January 15th, 2009

TinyURL is a very handy service for shortening long URLs but it can also be used maliciously.  Anytime somebody wants to hide where they are sending you they can easily generate a TinyURL and you will not know where you will end up.  It could be a phishing site.  It ...

Watch out for hidden cookies

Wednesday, December 31st, 2008

By now, most of us are aware of the potential privacy risks posed by Web cookies. But according to a new paper published by security consultancy iSec Partners, traditional browser-based cookies aren't the only technology used to store user data anymore. A number of browser plug-ins offer similar capabilities -- ...

Private Browsing in Firefox

Wednesday, November 5th, 2008

Today, a major feature was added to the pre-release versions of Firefox 3.1, called Private Browsing. I've been working for quite some time on this, so I thought it may be a good time to write about what this feature is and how to use it.As you may know, while ...

NoScript mitigates HTTPS cookie hijacking attacks

Thursday, September 11th, 2008

The invaluable NoScript for Firefox plug-in just got a tad better.According to Giorgio Maone, the developer behind the popular browser extension, a new experimental feature called “Forced Secure Cookies” has been added to NoScript v1.8.0.5 to mitigate the HTTPS cookie hijacking attack vector discussed at DEFCON 16 last month.Source: http://blogs.zdnet.com/security/?p=1882