Your Browser Leaks Sensitive Info to Hackers?

A hacker attempting to steal IT clients personal information in Alberta.
Browsers leak sensitive info to hackers by Bulletproof IT

The Autofill feature fills a void in the web browsing habits of many. It eliminates the need to enter all your details when logging on your social media accounts or when checking out your basket after e-shopping. On Chrome and Safari browsers, however, danger lurks when you rely too much on autofill. Without knowing it, you may be exposing personal information to hackers who have found a way to steal your credit card info and shop at your expense through browser leaks.

How do they do it?

By concealing other fields in a sign-up form, users are tricked into thinking they only have to fill out a few fields. The trickery at work is that upon auto-sign up, other fields, which could include your billing address, phone number, credit card number, CVV (the 3-digit code used to validate credit card transactions), and other sensitive information, are auto-filled with the user none the wiser.

This sinister trick is nothing new, but since there hasn’t been any countermeasure since it was first discovered, the threat it poses is worth emphasizing. Finnish whitehat hacker Viljami Kuosmanen recently brought to light how users of Chrome and Safari are particularly vulnerable, and he even came up with a demonstration of how this phishing technique is perpetrated. The technique is so sneaky, it’s enough to make one give up online shopping forever.

Using plugins and programs such as password managers is also fraught with the security risk, as having access to such a utility empowers cyberthieves to do more than just obtain your credit card info; it opens them up to a great number of personal details.

Preventing an autofill-related theft

So what can you do to avoid falling prey?

Using Mozilla Firefox is one of the easiest available solutions. As of today, Mozilla hasn’t devised a mechanism that affords its users the same convenience that Chrome and Safari users enjoy with autofill. When filling web forms on Firefox, users still have to manually pre-fill each data field due to a lack of a multi-box autofill functionality – a blessing in disguise, given the potential for victimization in autofill-enabled browsers.

Another quick fix is disabling the autofill feature on your Chrome, Safari, and Opera (for Apple mobile devices) browsers. This would mean that when filling out web forms, you'd have to manually type responses for every field again, but at least you'd be more secure.

A worry-free business owner who is protected from browser leaks by his IT Support Company in Alberta.
Preventing an autofill-related theft by Bulletproof IT

It’s not exactly the most sophisticated form of online data and identity theft, but complacency can result in being victimized by cyber swindlers. Take the first step in ensuring your systems’ safety from browser leaks by getting in touch with our security experts today. Published with permission from TechAdvisory.org. Source.

January 27, 2017
Author

Get Bulletproof IT Today

Need help with your business technology? 
Contact Us Today
Recent Posts
Notice of Global Technology Supply Chain Shortage

To our valued clients and business partners, The World Health Organization has officially declared COVID-19 a pandemic, with global economic implications that we have already begun to see. The supply chain consequences stemming from the current lock-down in China are real, and we are feeling the impact now in Canada. What does this mean for […]

Read More
Assessing Your Technology with a Managed Service Provider

Many small to mid-sized businesses do not have their own IT department or the capabilities to maintain their network infrastructure in-house. That’s where a managed service provider comes in. The right MSP can be a game-changer for your company. They can help streamline your technology so that you worry less about failing computers and more […]

Read More
envelopelocation-arrow
Bulletproof IT Support And Managed Services
linkedin facebook pinterest youtube rss twitter instagram facebook-blank rss-blank linkedin-blank pinterest youtube twitter instagram