Home
Privacy Blog (home)
Full Tag List

'Unsafe Surfing and the Danger of the Mouse Over'





Login or Register


Interact
6471

Related Ebooks:
6471

Related Resources
6471

Other Resources
6471

Tags

Previous Posts
Blog Roll:


Top Searches: • examples of unsafe surfing • surf danger statistics •

Unsafe Surfing and the Danger of the Mouse Over

By Wilbur Corncob at 09/07/07 07:44

A nice blog post titled Safe Surfing by David Grenda offered this simple advice, "Hold your mouse over an internet link without clicking the link. A message will appear showing the true destination for the link. If they don't match, don't click it."

Now this sounds like great advice as you will confirm the "true destination" for the link. Unfortunately, this is bad, bad, bad advice. Look at the following link, run the mouse over and see that the true destination is microsoft.com. Now click the link (it will open in a new window) and you should be surprised!

www.microsoft.com

Now it is extremely important to point out that this is not a trick, it is not a hack, it is done using a standard feature of html. The "window status" bar at the bottom of the browser is simply a variable that can be set by any website.

So the bottom line is that by running a mouse over the link doesn't show you the true anything, it only shows you what the website has programmed that line to read! It is only true that it will show you the true destination if the creator of the website didn't program it to do otherwise.

The danger here is that with an incorrect belief about what is displayed on the windows status bar you'll be easily tricked by the fraudsters who I believe go far displaying the "wrong" information in the window status bar.

You can add the following line to any a href tag in your html code, a mouse over of anylink in the href will show as microsoft.com. You can change the text to anything you want.

onMouseover="window.status='http://www.microsoft.com'; return true" onMouseout="window.status='';return true"

News Digest Blog
Tags: • - Permalink
Trackbacks
Trackback specific URI for this entry

No trackbacks.
Comments


Leave a comment:

We welcome your comments on this post in the Privacy Blog. That means a comment on this post, not something about some other topic.

Name:     (required)
Email:    (required, not published)
Comment:
         


Note: Your comment will be immediately submitted and you will have no opportunity to review to edit it.

It is recommend that you register on Privacy Blog and login so you can include full html (ie: links). We don't have a chapta because we think we're smarter than the spambots.

0

For the full benefit of Privacy Blog website please register and login. You can upload your photos and interact with other users better.

Login with Email: Password:
Not a member? Register: Register for Privacy Blog

Note: once you register your email address with Privacy Blog it is used across our whole network of forums and blogs. You can create seperate profiles for each forum or blog, but use the same login.



safe_surfing

* com * top 100 * 10 * 6471 * Blog * Espanol *

Have you added a link to us from your website? (6471):

  • <a href="http://blog.fulldisclosure.org">Privacy Blog</a>
news Unsafe Surfing and the Danger of the Mouse Over

Web site copyright (c) 2007-2008 GLR Sales LLC.




(rozwqrzurzuw)

Privacy Policy
20070907-07442-Unsafe-Surfing-and-the-Danger-of-the-Mouse-Over safe surfing 'Unsafe Surfing and the Danger of the Mouse Over'