SAS 70:

vendors

Nov 27 2008   4:37PM GMT

Have you been Clickjacking lately? SAS70



Posted by: sas70expert
vendors, browsers, internet, internet explorer, SaaS, firefox, Opera, SAS 70, Clickjacking, Safari

 Clickjacking threatens all major internet browsers – internet explorer, Mozilla firefox, Safari and Opera. What is it? Clickjacking is not when your wife takes over the remote control. It is when a browser user puts his mouse on a sign button, but a tag is placed under the button that the user may not see. When the user clicks, he then sends information to an unauthorized source. This could destroy the legitimacy of your web application or you SaaS.

 

There are several possible solutions to this hacker attack, but only with updates by the browser vendors. Firefox has a stop-gap solution in place – “no-script.” It is a technical solution and not for everyone. If you process credit card information, your SAS 70 auditor will look to see what precautions you have taken. What measures do you have in place?  Trackback URL

AddThis Social Bookmark Button     0 Comments     RSS Feed     Email a friend