How hackers can ‘snoop on private web sessions’

July 26, 2010 04:55 pm | Updated December 04, 2021 10:52 pm IST - London

ONLINE SAFETY AN ILLUSION: People browse at an Internet cafe. Hackers have shown that netizens' web use can be tapped into even in the 'private' mode, without leaving a trace. File photo

ONLINE SAFETY AN ILLUSION: People browse at an Internet cafe. Hackers have shown that netizens' web use can be tapped into even in the 'private' mode, without leaving a trace. File photo

Experts have identified how their web browser’s ‘private mode’ setting is also vulnerable to hackers.

Most web browsers offer a private mode, intended to leave no trace of surfing history on the computer.

But Collin Jackson at Carnegie Mellon University in Pittsburgh, Pennsylvania and his colleagues have found ways to detect which sites were visited with the mode enabled.

Even if private browsing is enabled, details relating to the key remain stored on the computer’s hard drive, allowing a hacker to establish that a particular site had been visited. A hacker could “guess what sites you’ve been to based on traces left behind,” New Scientist quoted Mr. Jackson as saying.

These attacks on privacy “do not require a great deal of technical sophistication and could easily be built into forensics tools”, he added.

However, Rik Ferguson - a U.K.-based security researcher at Trend Micro of Tokyo, Japan - says that any attacker with the knowledge to exploit the weaknesses would probably look to other attacks first, which may yield more detailed information.

“If someone is capable of tracking your browsing habits in this way, then they are probably also tech-savvy enough to know about commercial spyware which could much more effectively track your computer use,” says Mr. Ferguson.

0 / 0
Sign in to unlock member-only benefits!
  • Access 10 free stories every month
  • Save stories to read later
  • Access to comment on every story
  • Sign-up/manage your newsletter subscriptions with a single click
  • Get notified by email for early access to discounts & offers on our products
Sign in

Comments

Comments have to be in English, and in full sentences. They cannot be abusive or personal. Please abide by our community guidelines for posting your comments.

We have migrated to a new commenting platform. If you are already a registered user of The Hindu and logged in, you may continue to engage with our articles. If you do not have an account please register and login to post comments. Users can access their older comments by logging into their accounts on Vuukle.