Clickjacking is an attack that tricks victims into clicking on invisible elements of a web page to perform an unintended action that is advantageous for an attacker. To defend against clickjacking, many techniques have already been proposed, but it is still unclear whether they are effectively deployed in practice. We study how vulnerable Korean websites are to clickjacking attacks by performing real attacks on top 100 popular Korean websites as well as all the financial websites. Our results are quite significant: almost all Korean websites (about 99.2 %) that we looked at are vulnerable to clickjacking attacks. Extending our observation to mobile websites, we can also obtain similar results. © 2014 Springer International Publishing Switzerland.
CITATION STYLE
Kim, D., & Kim, H. (2014). We are still vulnerable to clickjacking attacks: About 99% of Korean websites are dangerous. In Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics) (Vol. 8267 LNCS, pp. 163–173). Springer Verlag. https://doi.org/10.1007/978-3-319-05149-9_10
Mendeley helps you to discover research relevant for your work.