Researchers from Belgium, the Netherlands and Switzerland analyzed the 100,000 most popular websites. They
After in May 2021, the researcherschecked sites for leaked passwords, they also found 52 sites where third parties collected password data before sending it. The group communicated its findings to these sites and all collections have been eliminated.
“If you see a button on the form on the website“send,” then it’s reasonable to expect that it won’t do anything until you click it,” says Güneş Acar, a professor and researcher in Radboud University’s digital security group and one of the study’s leaders. — We were extremely surprised by our results. We thought we would find several hundred sites that collect email before you send it, but these results exceeded all our expectations."
The researchers added that the information was collected fromusing a tool whose behavior resembles a keylogger - these are malicious programs that record everything that the user types on the keyboard. Some sites logged each keystroke, but many captured the full field data as the user navigated to the next one.
"In some cases, when you click onnext field, they collect information from the previous one, and when you click on the password field, they save the email,” said Asuman Senol, a privacy researcher at KU Leuven and one of the study’s co-authors. “We didn’t expect to find thousands of sites that violate the rules so much.”
Since the results of the study show thatdeleting form data before submitting may not be enough to protect yourself from data collection, the researchers created a Firefox extension called LeakInspector. The researchers hope that their data will raise awareness of the problem not only for ordinary users, but for developers and site administrators.
Read more
American satellite "saw" an unusual message from Earth
Published video from the rocket, which was launched from an experimental accelerator
The monster at the center of our Galaxy: look at the photo of a black hole in the Milky Way