Skip to navigation
Latest News

Most surfers vulnerable to "history sniffing" attacks

WhatTheInternetKnowsAboutYou.com

By Stewart Mitchell

Posted on 21 May 2010 at 09:41

Three quarters of the surfing population are open to “history sniffing” attacks that can expose surfing habits and even identify where they live.

The report, published by security researchers behind the What The Internet Knows About You website, claims that browser history detection through Cascading Style Sheets has long been documented by security academics, but had been dismissed as low risk. Until now.

“Our results indicate that at least 76% of internet users are vulnerable to history detection; for a test of most popular internet websites we were able to detect, on average, 62 visited locations,” said the report's authors, Artur Janc and Lukasz Olejnik.

“We also demonstrate the potential for detecting private data such as zipcodes [postcodes] or search queries typed into online forms,” the researchers said. “Our results confirm the feasibility of conducting attacks on user privacy using CSS-based history detection and demonstrate that such attacks are realisable with minimal resources. This is of great practical significance.”

The researchers say they analysed the real-world results collected by interrogating the browser of 271,576 internet users.

The history sniffing technology involved creating an algorithm that was able to search a browser's history and detect up to 30,000 links per second in recent browsers on modern consumer-grade hardware.

The researcher's website reveals whether your browser is susceptible to such attacks.

Subscribe to PC Pro magazine. We'll give you 3 issues for £1 plus a free gift - click here

From around the web

User comments

Should we be supprised

The powers that be all (including PCPro) tell us to keep private, and then when you want to do anything on the net the individual sites rewuire you to signup and (including PCPRo) update your profile with all the private info you should kep private, mostly info that is not really needed.
Most info is not compulsory but most, especially children fill it all in.

By Andylec on 23 May 2010

Leave a comment

You need to Login or Register to comment.

(optional)

advertisement

Most Commented News Stories
More From PC Pro
Internet Explorer 9 Resources
Latest Blog Posts Subscribe to our RSS Feeds
Latest ReviewsSubscribe to our RSS Feeds
Latest Real World Computing

advertisement

Sponsored Links
 
SEARCH
SIGN UP

Your email:

Your password:

remember me

advertisement


Hitwise Top 10 Website 2010
 
 

PCPro-Computing in the Real World Printed from www.pcpro.co.uk

Register to receive our regular email newsletter at http://www.pcpro.co.uk/registration.

The newsletter contains links to our latest PC news, product reviews, features and how-to guides, plus special offers and competitions.