Security News

Firefox Blocks Inline and Eval JavaScript on Internal Pages to Prevent Injection Attacks
2019-10-15 10:49

In an effort to mitigate a large class of potential cross-site scripting issues in Firefox, Mozilla has blocked execution of all inline scripts and potentially dangerous eval-like functions for...

Web clickjacking fraud makes a comeback thanks to JavaScript tricks
2019-08-29 14:30

More than a decade after hitting the headlines, clickjacking fraud remains an under-reported hazard on hundreds of popular websites.

RiskIQ JavaScript Threats Module protects orgs’ high-traffic payment pages from JavaScript attacks
2019-08-01 03:45

RiskIQ, the global leader in attack surface management, announced the launch of RiskIQ JavaScript Threats Module to ensure customer trust in e-commerce by protecting organizations’ high-traffic...

JavaScript tells all, which turns out not to be so great for privacy: Side-channel leaks can be exploited to follow you around the interweb
2019-06-11 08:58

And using browser privacy extensions may just make matters worse Boffins from Graz University of Technology in Austria have devised an automated system for browser profiling using two new side...

Jscrambler launches Self-Healing JavaScript to prevent code tempering
2019-06-11 01:30

Jscrambler, a technology company specializing in JavaScript Application Security and Web Page Monitoring solutions announces Self-Healing JavaScript – a world first for JavaScript application...

CSS tracking trick can monitor your mouse without JavaScript
2019-05-09 14:40

A security researcher has demonstrated a new way to track mouse movements even if users block JavaScript.

JavaScript Sniffer Attacks: More Online Stores Targeted
2019-05-07 21:33

Latest Attack Targets Online Campus Stores in US and CanadaJavaScript sniffers, which are used to skim credit card and other customer data from e-commerce websites, are a persistent threat. In the...

E-commerce JavaScript Sniffer Attacks Proliferate: Report
2019-04-05 20:18

Group-IB Researchers Analyze the Latest Global TrendsJavaScript sniffers - specialized malware that skims credit card information and other data from online shopping - are becoming far more...

JavaScript Library Introduced XSS Flaw in Google Search
2019-04-01 18:35

A change made several months ago in an open-source JavaScript library introduced a cross-site scripting (XSS) vulnerability in Google Search and likely other Google products. read more

FBI warns of SIM-swap scams, IBM finds holes in visitor software, 13-year-old girl charged over JavaScript prank...
2019-03-09 08:30

Tired: Booth babes. Wired: Floof babes. Expired: Conference hall carpets Roundup This week we had an NSA reverse-engineering toolkit released at the RSA Conference, a buffer bashed aboard British...