Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Wow Feross. Another sweet demo. I still feel like there is so much to learn about security, but what I am always amazed at is that the "social engineering" attacks seem to be the problems that we can never solve. Yes, there is a technical component (HTML5 full screen api), but at its core this is a phishing attack, a "fool the user" attack, and not an actual technical security flaw.

Basically, if I wasn't paying attention, I feel like this was good enough to fool me. What can be done to save the casual, but maybe unfortunately inept internet user?



Thanks Jeremy!

"What can be done to save the casual, but maybe unfortunately inept internet user?"

That's a really good question and unfortunately I don't think anyone has a good answer.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: