No boundaries: Exfiltration of personal data by session replay scripts

Freedom to tinker(2017)

引用 19|浏览22
暂无评分
摘要
“No boundaries: Exfiltration of personal data by session-replay scripts” (freedom-to-tinker.com ) “No boundaries for user identities: Web trackers exploit browser login managers” (freedom-to-tinker.com) … ● Session recording scripts create a “video” of … ● Who added items to the cart but didn't convert … ● Where do users leave the onboarding flow … More than just site optimization: Jornaya (LeadID) uses … The problem: recordings require a ton of data … The problem: pages contain a ton of sensitive data … Session recording scripts are (too) easy to integrate … A timer counting how long it takes you to embed their code … Recording includes CVV field → Not PCI compliant … From: https://www.pcisecuritystandards.org/pdfs /pci_fs_data_storage.pdf …  … Unexpected input types can also cause password leaks … Demo from: https://codepen.io …
更多
查看译文
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要