Subscribe to my full feed.

Subscribe in a reader
Subscribe to posts by Email
Add to Technorati Favorites

Thursday, December 27, 2007

How to be safe from Scrapbook XSS Bug

I have already posted many posts including incidents in which Scrapbook XSS Bug was used...

here are some posts :
Automatically Log out Script
Orkut ScrapAll Virus
Orkut Worm

Many Orkut Users became the victim of these attacks..
so Now i am posting to tell you how you can be safe from these XSS hacks

Firefox Users :

Update Firefox to 2.0.0.11 or higher
The latest series of firefox comes with an inbuilt feature of httpOnly which encrypts your cookies so that the information in the cookie cannot be read. This may result to be a boon for orkut users.
You can download the latest version of firefox from www.getfirefox.com

Download FlashBlock

For firefox users i would highly recommend that they should Install Flashblock firefox extension!
After Installing FlashBlock just restart your browser


Internet Explorer Users :

  • Go to the Tools Menu -> Internet Options
  • Click on the Security tab
  • Click on Custom Level
  • DisableRun ActiveX controls and plug-ins

Hope this Helps !!


AddThis Social Bookmark Button
Subscribe to Orkut Underworld by Email

Related Posts by Categories



Anonymous said...

i want to quick solution on my scrapbook hacking plz coz i m log out when i see my scrapbook plz

ShOw Ur ReSpEcT said...

login 2 ur orkut id. open your scrapbook, now open any other page in new window of ur scrap book (ex: right click on communities on the top of the page and open it in new window). after doing dis, u will b logged out, but ur scrapbook page remains open... now again login using orkut id, and delete the INVISIBLE scrap (delete the scrap only after logging again). Hope dis might work 4u.