Explore tweets tagged as #Clickjacking
@Burp_Suite
Burp Suite
27 days
We got really sick of making Clickjacking PoCs... It's so tedious... Framing the page, lining up the buttons.. Sooo we got Burp AI to do it for us 🎉 get a working HTML page right from your Repeater tab!
3
17
106
@thevpncompany
hide.me VPN
2 months
What VPNs can and can’t do? How to use them effectively? You switched on a VPN and think you’re invisible? Not quite. VPNs do mask your IP, encrypt your traffic, and help you bypass geo-blocks, but they can’t protect you from every threat (clickjacking, phishing, data leaks,
1
2
6
@0xCHIB
chib
9 days
🚨Clickjacking Wallet Drainer 🚨
0
2
3
@iGovTT
iGovTT
2 months
Ever heard of Clickjacking? Learn what it is, how it works, and how to protect yourself.
0
0
0
@MakeTechEasier
MakeTechEasier
24 days
A DOM exploit containing a clickjacking element allows hackers to stealthily trigger password managers’ autofill feature to steal sensitive information. 👉: Top Password Managers at Risk of DOM-Clickjacking Attack – How to Protect Yourself ▸ https://t.co/KE9lTDnEQb
0
0
0
@WebSecAcademy
Web Security Academy
2 months
Learning path: Clickjacking (UI redressing) Clickjacking is a malicious technique that tricks users into clicking on an manipulated interface over a legitimate one. In this learning path you’ll learn how to: 🔶 Define what clickjacking is and how it tricks users. 🔶 Create
0
5
55
@Paul_Krma
Paulo
10 days
Aujourd’hui, un chercheur en cyber a trouvé une vulnérabilité sur mon saas OnePost Il m’a contacté, a identifié l’impact pour mon SaaS et fourni des recommandations pour la corriger. La vulnérabilité était un clickjacking : en gros un autre site pouvait afficher ma page dans un
1
1
6
@WebSecAcademy
Web Security Academy
15 days
Let's talk about clickjacking (UI redressing). Clickjacking is a malicious technique that tricks users into clicking on an manipulated interface over a legitimate one. In this learning path you’ll learn: 🔶 How to define what clickjacking is and how it tricks users. 🔶 Learning
1
3
35
@TechloreInc
Techlore
3 months
🔓 SECURITY ALERT: Zero-day clickjacking vulnerabilities found in browser password managers like Bitwarden, 1Password & Proton Pass. These flaws could allow attackers to trick users into revealing their master passwords through deceptive overlays...here's what you need to know🧵
47
159
936
@WebSecAcademy
Web Security Academy
2 months
APPRENTICE LAB: Basic clickjacking with CSRF token protection. Clickjacking tricks users into clicking something they don’t see, often within a transparent iframe. Even with CSRF tokens in place, user interaction can still be weaponized, and that’s exactly what this lab teaches.
3
4
45
@creatroyes
Créa-troyes
14 days
0
0
1
@CyberArk
CyberArk
2 months
Clickjacking tricks are evolving, but autofill isn’t the villain. Laura Balboni breaks down the real risks and smarter safeguards. https://t.co/EWhv3gyZ0X #IdentitySecurity #Cybersecurity #Autofill
0
1
3
@WebSecAcademy
Web Security Academy
1 month
Clickjacking leaves users exposed to hidden UI actions. Frame-busting scripts often fail, leaving sites vulnerable to overlay tricks. Here's how to defend against it👇 X-Frame-Options was first introduced in IE8 and later adopted by other browsers. It lets site owners control
2
4
53
@MakeTechEasier
MakeTechEasier
23 days
These clickjacking attacks are limited to the password manager extension that autofills the information or populates when commanded. 👉 Top Password Managers at Risk of DOM-Clickjacking Attack – How to Protect Yourself https://t.co/pXCqZu9oye #PasswordManagers
0
0
0
@Al7lhh223
مجلاد بن مشاري السبيعي
3 months
🛰️ رادار التهديدات السيبرانية الأسبوعي – The Hacker News (أغسطس 2025) Weekly Cyber ​​Threat Radar 1. 🔑 ثغرات مديري كلمات المرور •اكتشاف هجوم DOM-based Clickjacking في إضافات أشهر مديري كلمات المرور. •يسمح بسرقة كلمات المرور، 2FA، وبيانات البطاقات عند النقر على عناصر واجهة
2
2
22
@ITConnect_fr
IT-Connect.fr
3 months
🔎 Une attaque de type Clickjacking DOM touche les extensions de 11 gestionnaires de mots de passe populaires : LastPass, Bitwarden, ProtonPass, iCloud Passwords... ➡️ Impact : voler identifiants, données bancaires et même codes 2FA. 🧷 https://t.co/xwbMvx5Jgb #infosec
1
18
39
@theXSSrat
The XSS Rat - Proud XSS N00b :-)
2 months
Top 10 web area's to start your hunt with: 1. SQL Injection (#SQLi) 2. Cross-Site Scripting (#XSS) 3. Cross-Site Request Forgery (#CSRF) 4. Insecure Direct Object References (#IDOR) 5. Clickjacking (#Clickjacking) 6. Command Injection (#CommandInjection) 7. Remote File
4
51
360
@richyrich
Richy
3 months
Looks like there is finally added color to the previous telegram phishing by a user sending SOL to be taught to trade and stealing funds Looks like at DEF CON 33 there was a zero-day revealed that acted as a clickjacking scenario to steal credentials Switch if vulnerable 🫡
2
2
5
@mekinpesen
M. Mekin PESEN
2 months
DOM-based Extension Clickjacking: Your Password Manager Data at Risk
0
0
0