Full Disclosure mailing list archives

RE: Defeating Citi-Bank Virtual Keyboard Protection


From: "Aditya Deshmukh" <aditya.deshmukh () online gateway strangled net>
Date: Sat, 6 Aug 2005 07:16:41 +0530


proximity of mouse cursor on every mouse click? It's not that
resource consuming, and easy to arrange.

You'd need to squeeze in some OCR code as well, or figure it out
manually (or maybe use the same techniques as for getting around
"captchas").

Another simple method capture the screen shot and send the picture along the
keylog

I think you would get a lot of commercial keyloggers that already have this
capability and use the screen dumps for offline analysis

This sure gets around most of the obstacles.....

-aditya



________________________________________________________________________
Delivered using the Free Personal Edition of Mailtraq (www.mailtraq.com)
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: