Researchers Expose Cunning Online Tracking Service That Can’t Be Dodged

Sunday, July 31st, 2011

Researchers at U.C. Berkeley have discovered that some of the net’s most popular sites are using a tracking service that can’t be evaded — even when users block cookies, turn off storage in Flash, or use browsers’ “incognito” functions. The service, called KISSmetrics, is used by sites to track the number ...

FireShepherd – The FireSheep Killer

Tuesday, November 2nd, 2010

FireShepherd, a small console program that floods the nearby wireless network with packets designed to turn off FireSheep, effectively shutting down nearby FireSheep programs every 0.5 sec or so, making you and the people around you secure from most people using FireSheep. The program kills the current version of FireSheep ...

Firesheep Highlights Web Privacy Problem

Monday, October 25th, 2010

A new add-on program for the popular Firefox Web browser is stirring up longstanding concerns over how many websites electronically identify their users.It’s a problem associated with the use of wireless networks. The add-on program, Firesheep, is designed to make it easy to intercept browser “cookies” used by popular Web ...

evercookie

Friday, October 22nd, 2010

evercookie is a javascript API available that produces extremely persistent cookies in a browser. Its goal is to identify a client even after they've removed standard cookies, Flash cookies (Local Shared Objects or LSOs), and others. evercookie accomplishes this by storing the cookie data in several types of storage mechanisms ...

Using Metasploit’s Incognito To Impersonate User Tokens

Saturday, January 30th, 2010

I just wanted to show a quick example of using Incognito to impersonate user tokens on a compromised system.  You can think of tokens as a web "cookie" which is just an object that holds your security information for the entire login process so that you don't have to re-authenticate ...