Title :
On Detection and Prevention of Clickjacking Attack for OSNs
Author :
Rehman, Ubaid Ur ; Khan, Wajahat Ali ; Saqib, Nazar A. ; Kaleem, Mohammed
Author_Institution :
Sch. of Electr. Eng. & Comput. Sci., Nat. Univ. of Sci. & Technol., Islamabad, Pakistan
Abstract :
Click jacking attacks are the emerging threats to websites, especially to online social networks (OSNs). In this paper, we describe some new attacks to online websites. The new Click jacking attacks cause serious damage to users by stealing their personal credentials or by sharing their personal information on social networks bringing moral degradation to them. The attacker applications are hidden behind the sensitive user interface to steal the clicks of the user and use them for the illegal purposes. To detect and prevent Click jacking attacks, we propose a browser-based solution referred to as Cursor Spoofing and Click jacking Prevention (CSCP). CSCP ensures protection Cursor spoofing attack with high effectiveness and also the Like jacking attacks, other variation of Click jacking attacks which associate malicious code to Facebook Like buttons. We have conducted our studies on 442 participants to evaluate the effectiveness of our attacks and also defenses. Results show that our attack success rate falls between 76% and 78%.
Keywords :
security of data; social networking (online); user interfaces; CSCP; Clickjacking attack detection; Clickjacking attack prevention; Cursor spoofing and Clickjacking prevention; Cursor spoofing attack protection; Facebook Like buttons; Likejacking attacks; OSN; attacker applications; browser-based solution; malicious code; online Web sites; online social networks; personal credentials; personal information; sensitive user interface; Browsers; Cascading style sheets; Facebook; Google; Security; Web pages; Cascading Style Sheet (CSS); Clickjacking; Cursor Spoofing; Frame Busting; Likejacking;
Conference_Titel :
Frontiers of Information Technology (FIT), 2013 11th International Conference on
Conference_Location :
Islamabad
Print_ISBN :
978-1-4799-2293-2
DOI :
10.1109/FIT.2013.37