[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y ] [Search | Free Show | Home]

>Chrome form autofill leaks data you never meant to share

This is a blue board which means that it's for everybody (Safe For Work content only). If you see any adult content, please report it.

Thread replies: 49
Thread images: 5

File: Chrome-autofill-demo.gif (383KB, 770x669px) Image search: [Google]
Chrome-autofill-demo.gif
383KB, 770x669px
>Chrome form autofill leaks data you never meant to share
What the fuck, seriously.

Does Firefox do this shit too?
>>
>>58479796
well, this is fucked up..
>>
>chrom*
lol enjoy your botnet faggot
>>
Antti, use Opera.
>>
>>58479796
FFS. My guess is sites don't get this data if it isn't actually inputted into the form?

Still a bit scary.
>>
>>58479975
This. Hey, at least your browser is, like, super fast.
>>
>>58479980
It's in the POST. sites just get the POST. Therefore the site gets it.
>>
>>58480010
And not even that for much longer, thanks to Servo. But I guess at least then Chrome will still be made by friendly Google instead of those /SJWs/ at Mozilla.
>>
>>58480157
it is unused still, just discarded
>>
>>58480231
No. Not if companys know if thats a free way to farm so addresses.
>>
>>58479980
>FFS. My guess is sites don't get this data if it isn't actually inputted into the form?
Sites get all data sent in the request header, which everything in that image was
>>
File: IMG_2760.gif (327KB, 515x355px) Image search: [Google]
IMG_2760.gif
327KB, 515x355px
>>58479796
>using autofill
!?
>>
File: chromelol.jpg (61KB, 399x399px) Image search: [Google]
chromelol.jpg
61KB, 399x399px
>>58480010
>>
>>58480218
>servo
You mean the new layout engine Mozilla has been working on for 5 years that just a few months ago was able to produce a working demo capable of rendering text and images?
>>
>>58480256
you're misreading anon's first statement. if you type in the data manually the POST won't contain data from a would-be autofill
>>
>>58480277
>no adblock
??
>>
>>58480318
>Adblock
Kys
>>
>>58479980
The site needs to have other form inputs for address, phone etc. as well. But if you use autofill they will be filled in and sent, too, even if they are hidden.

The full example can be found here: https://github.com/anttiviljami/browser-autofill-phishing
>>
>>58480326
>no adblock
>says kys
??
>>
>>58479796
This doesn't always happen, this happens when the site has hidden input fields, Chrome will fill them out as well.
>>
>>58480318
newfag detected
>>
>>58479796
>has autofill enabled
>forms are automatically filled
Problem?
>>
File: 1313099482809.png (34KB, 200x200px) Image search: [Google]
1313099482809.png
34KB, 200x200px
>>58480369
No one on Earth would abuse this right.
People is good after all.
>>
>>58480374
why
>>
>>58480396
dont autofill forms on sites you don't trust, or don't at all if you're so spooked, easy!
>>
>>58480381
He's just a retard.
Like the same ones that that get ransomware by browsing bigblackttites.com or some other dodgy porn site.

>I auto-fill and save all my info in the cache and google account
>oh no, it auto filled! God damn hackers :(((((
>>
>>58480401
Chrome's addon API used to have no way to intercept and block web requests, so all “ad blockers” could do was hide ads, not block them

It took a lot of pressure for google to finally change this
>>
>>58479796
the form has to be specially designed for this to happen, doesn't it?

for this to happen the input fields would need to be there, but they can be hidden
>>
>>58480416
>w-who cares that windows spies on you whenever you plyg a webcam in, you can just not plug in a webcam! Easy!
>>
>>58480429
>used to
>>
>>58480418
Well in fairness I browse lots of dodgy porn sites but I have ublock origin, umatrix and noscript carefully configured and have never got ransomware.

What I'm more surprised about is that I never got ransomwared from cracked game torrents
>>
>>58480369
>>58480416
>>58480418
0.02 shekels has been deposited into your account
>>
>>58480441
poor comparison

>>58480499
epik post, good meme'd
>>
>>58479796
Use Opera >>58469437
>>
>>58480340
>Adblock
>Not uBlock
>>
>>58480677
I meant adblockers in general, I use uBlock.
>>
If anyone wants to try for themselves

https://a.pomf.cat/znwsoo.html
>>
Chrome is a hacky mess.

>Chrome's file selection window keeps getting bigger
>Google's fix is to just force the window to its smallest size every time you open it
What a fucking joke
>>
>>58480695
Thank you.
Chrome: Vulnerable
Firefox: Not vulnerable
Edge: "This website has been flagged as unsafe"
IE: I don't know, I don't use it.
>>
I can't help but feel this is intentional from Google
>>
>>58480302
No shit. fucktard.
Now how many people use autofill?
>>
File: Screenshot (9).png (89KB, 1920x1080px) Image search: [Google]
Screenshot (9).png
89KB, 1920x1080px
>Chrome ran out of memory
LOL WUT
>>
>>58480714
>Chrome is a hacky mess.
the botnet dataminer works
everything else is of low priority
>>
>>58480695
email: sage
name:
phone:
ship-address:
ship-city:
ship-state:
ship-zip:
ship-country:

riiight...
>>
Why even care?

Enough places get your data anyway and you can do nothing to stop that.

Fuck it and keep using autofill.
>>
Apple Safari doesn't have this problem
>>
>>58479796
>unironically using any type of autofill

Anybody who uses this, should be beheaded right away
>>
>>58479796
>reposting last year """news"""
when was chrom*, and derivatives, not shit on security?
>more at 11, tune in
>>
>only shitposting
>not a single answer to OP's question
never change, /g/
Thread posts: 49
Thread images: 5


[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y] [Search | Top | Home]

I'm aware that Imgur.com will stop allowing adult images since 15th of May. I'm taking actions to backup as much data as possible.
Read more on this topic here - https://archived.moe/talk/thread/1694/


If you need a post removed click on it's [Report] button and follow the instruction.
DMCA Content Takedown via dmca.com
All images are hosted on imgur.com.
If you like this website please support us by donating with Bitcoins at 16mKtbZiwW52BLkibtCr8jUg2KVUMTxVQ5
All trademarks and copyrights on this page are owned by their respective parties.
Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.
This is a 4chan archive - all of the content originated from that site.
This means that RandomArchive shows their content, archived.
If you need information for a Poster - contact them.