Clickjacking - another way to get you to follow a malicious link - Facebook issue
"A clickjacked page tricks a user into performing undesired actions by clicking on a concealed link. On a clickjacked page, the attackers show a set of dummy buttons, then load another page over it in a transparent layer. The users think that they are clicking the visible buttons, while they are actually performing actions on the hidden page." - Wikipedia -
[here].
And - in English - there's a way of putting up a legitimate page (for something like a YouTube video) but then putting another button over the "play" button so it does something else. Rather like "skimming" with a ATM machine, where the crooks put another keypad over the real one, so that you think you're using the ATM but in reality you're [also] giving them personal information.
I clicked on a friend's link to a video in Facebook a few minutes ago, and it didn't work / play the video the first time. Hmm. Try again. But - wait - was this really tha page I was on? It looks like I may have been caught here. See
[here].
So - be warned / be careful what you click. And if you're caught (as I suspect I was) on Facebook, it's probably best to change your passwords and check your other setting withut delay.
P.S. This ClickJack is viral ... it reposted itself in FaceBook under my name ... and I have also deleted than onward post.
(written 2011-03-29)
Associated topics are indexed under
G910 - Well House Consultants - Scams [3480] Direct Message: Really horrible blog about you ... a clever phishing trip, said to be from an MP - (2011-10-14)
[3291] Pay and refund scam - alive and kicking against Melksham businesses - (2011-05-16)
[2988] Not mugged in London! - (2010-10-08)
[2895] Global Computer Maintenance Department - (2010-07-29)
[2690] The World Company Register - is it another scam? - (2010-03-23)
[2524] An update on legal changes from the FSB? - (2009-12-03)
[2403] Hotel Booking Scam / Cost of calls to 070 numbers - (2009-09-12)
[2373] Translation from Ghanaian to English - (2009-08-23)
[1795] What have iTime, honeytrapagency and domain listing center got in common? - (2008-09-12)
[1772] Ken Palm, iTime, and Domain Name Tasting - (2008-08-25)
[1680] Astroturfing - the online definition - (2008-06-17)
[1342] Google, wwmdirectory, Freshwater, ATP - new scam? - (2007-09-09)
[1313] Tratum Technologies - (2007-08-21)
[860] Warning - false emails, said to be from Paypal - (2006-09-09)
[347] Frightening and from-friend viruses and spams - (2005-06-14)
[178] Calling a spade a spade - (2005-01-15)
[78] Domain Registry of America - (2004-10-07)
Some other Articles
A busy morning for railway announcementsCampus - answer to business questionsMelksham Campus - a win / win opportunity, but a severely lacking decision processAnswering at my earliest convenienceClickjacking - another way to get you to follow a malicious link - Facebook issueHow long is a speech?Panasonic Lumix TZ20How do I become a Linux System Administrator?Matching a license plate or product code - Regular ExpressionsVandalism and riot from the minority - the effect