Follow us on RSS or Twitter for the latest updates.

July 2, 2011

Clipboard Hacking: How it's done and how to Prevent It


ie-flawThis is one of the most popular things we do on the internet with our keyboard. "Ctrl+C". We copy data (i.e. email address, passwords, ssn, credit cards etc.) here and there and paste to wherever we want to reuse it. But do you realize that the data you copied are stored in what is called a clipboard temporarily and is accessible to anyone and can be stolen when you visit web sites using a combination of Javascripts and ASP (or PHP, or CGI) to write your data to a dabase on another server.

You might be wondering, how on earth is that possible. Its true and possible and we're going to explain how and how to prevent it from now happening. Just read on and i just hope you haven't copied a credit card number recently.

The Clipboard hack is done by the following Source Code:


Yes, with this simple script any website has the potential of stealing your sensitive information to their database.

Now the good news is this vulnerability can only be found on Internet Explorer and to avoid this clipboard hack problem IE users follow this simple steps.

Go to Internet Options -> Security
Press Custom Level
In the security settings, select disable under Allow paste operation via script.

Advise: I can't say you should stop using IE, though i don't use it but to save yourself from being a victim of this flaw don't use it. PERIOD.

1 Responses to “Clipboard Hacking: How it's done and how to Prevent It”

blogs for free said...
July 4, 2011 at 8:55 AM

Thank god this is only happen on IE.


Post a Comment