Added: 2 years ago
From: jinx4848
Views: 1,532
Sort by time | Sort by thread (beta)

Link to this comment:

Share to:
see all

All Comments (4)

Sign In or Sign Up now to post a comment!
  • why fake the statusbar of google chrome when you can simply fake the CONTENT of the statusbar of EVERY browser with javascript? even if the browser does not allow javascript to change the content of the statusbar, there will be shown a fake url.

    visit this page to test it out:

    h**p://labs.x3ro.net/statusbar­_exploit/

  • I wouldn't really call this an exploit. Think about how simple it would be to add a click() event to the link with Javascript and then when the user clicks, redirecting them to the malicious website. In that case, the link would appear identical to any real links, and this "exploit" would be cross-browser. I really wouldn't say that this video shows a flaw in Chrome.

  • @timothysvids I absolutely agree, in my mind an exploit is something like buffer overflow vulnerability which causes browser to execute some code.

  • on my ubuntu computer i can tell the difference because i have a dark skin and can tell which is which

Loading...
0 / 00Unsaved Playlist Return to active list
    1. Your queue is empty. Add videos to your queue using this button:
      or sign in to load a different list.
    Loading...Loading...Saving...
    • Clear all videos from this list
    • Learn more