Skip to content

Cyber Security And Bitcoin Blockchain News

The World

  • British MP Calls for ‘Liberal’ Crypto Regulation — Says ‘No Country Can Stop This Revolution’ – Regulation Bitcoin News bitcoin news
  • GensoKishi’s MV Token to Be Listed on Kraken – Press release Bitcoin News bitcoin news
  • VeChain At Risk Of Further Losses? VET Price Drops 30% In Downtrend bitcoin news
  • Moneygram Launches USDC Crypto-to-Cash Program in Certain Markets – Bitcoin News bitcoin news
  • Ethereum Market Cap Cut By Over $100 Billion Last Month bitcoin news
  • VAST Completes Private Investment Round as It Readies to Launch First-Ever EngageFi™ NFT Platform – Press release Bitcoin News bitcoin news
  • Fight for Crypto & Dominate the Cyberpunk Metaverse bitcoin news
  • Venezuelan Sunacrip Tightens Control on Transactions Made Using Unauthorized Exchanges – Bitcoin News bitcoin news

Web Trackers Caught Intercepting Online Forms Even Before Users Hit Submit

Posted on May 19, 2022 By root


Intercepting Online Forms

A new research published by academics from KU Leuven, Radboud University, and the University of Lausanne has revealed that users’ email addresses are exfiltrated to tracking, marketing, and analytics domains before such is submitted and without prior consent.

The study involved crawling 2.8 million pages from the top 100 websites, and found that as many as 1,844 websites allowed trackers to capture email addresses before form submission in the European Union, a number that jumped to 2,950 when the same set of websites are visited from the U.S.

“Emails (or their hashes) were sent to 174 distinct domains (eTLD+1) in the U.S. crawl, and 157 distinct domains in the EU crawl,” the researchers said. Furthermore, 52 websites were determined to be collecting passwords in the same manner, an issue that has since been addressed following responsible disclosure.

LiveRamp, Taboola, Adobe, Verizon, Yandex, Meta, TikTok, Salesforce, Listrak, and Oracle are some of the top third-party trackers that have been spotted logging email addresses, while Yandex, Mixpanel, and LogRocket lead the list in the password-grabbing category.

Email addresses pose a number of advantages. Not only are they unique, enabling third-parties to track users across devices, it can also be employed to match their online and offline activities, say, in scenarios where they make an in-store purchase that requires them to share their email address or sign up for a loyalty card.

The idea behind harvesting email addresses entered in online forms, even in cases where the users do not submit any form, has also been fueled by ongoing attempts by browser vendors to drop support for third-party cookies, forcing marketers to look for alternative static identifiers to track users.

This is not the first time such a concern has been raised. In June 2017, Gizmodo discovered that a third party called NaviStone was collecting personal information from mortgage calculator forms prior to their submission, with very few websites explicitly disclosing this practice in their privacy policy.

CyberSecurity

Fast forward five years later, not much has changed, the researchers said, what with websites related to fashion/beauty, online shopping, and general news emerging as the top categories with the most “leaky forms.”

“Despite filling email fields on hundreds of websites categorized as pornography, we have not a single email leak,” the findings show, noting how it lines up with previous studies that have shown that adult websites have relatively fewer third-party trackers when compared to general sites with comparable popularity.

What’s more, such a practice may be in violation of at least three different General Data Protection Regulation (GDPR) requirements in the E.U., contravening principles of transparency, purpose limitation, and user consent.

“Users should assume that the personal information they enter into web forms may be collected by trackers—even if the form is never submitted,” the researchers concluded, calling on a further investigation from browser vendors, privacy tool developers, and data protection agencies.





TheHackersNews/

cyber security news

Post navigation

Previous Post: Bitcoin Argentina NGO to Take Crypto Education to Schools – Bitcoin News
Next Post: Crypto Exchange Coinbase Slows Hiring Amid Market Downturn – Exchanges Bitcoin News

Related Posts

  • Interpol Nabs 3 Nigerian Scammers Behind Malware-based Attacks cyber security news
  • 7 Key Findings from the 2022 SaaS Security Survey Report cyber security news
  • New Android Banking Trojan ‘Revive’ Targeting Users of Spanish Financial Services cyber security news
  • Everything We Learned From the LAPSUS$ Attacks cyber security news
  • Chinese Hackers Distributing SMS Bomber Tool with Malware Hidden Inside cyber security news
  • Ukrainian Authorities Arrested Phishing Gang That Stole 100 Million UAH cyber security news

Archives

  • July 2022
  • June 2022
  • May 2022

Categories

  • bitcoin news
  • cyber security news

Recent Posts

  • Demand for Hardware Crypto Wallets Increases Amid Currency Restrictions in Russia – Bitcoin News
  • Cumberland Says Financially Burdened Crypto Firms Are ‘Hanging Over the Market Like a Cloud’ – Bitcoin News
  • Worst Quarterly Bitcoin Crash In A Decade Closes Above Key Support
  • Bitmain Launches 2,400 Megahash E9 Ethereum Miner Ahead of The Merge – Mining Bitcoin News
  • How This Company Lost 99% Of Its Clients Funds Shorting LUNA

Recent Comments

No comments to show.
  • Credibility Concerns — Gallop Poll Shows Fed Chair’s Confidence Ratings Slid by Double Digits – News Bitcoin News bitcoin news
  • BlackCat Ransomware Gang Targeting Unpatched Microsoft Exchange Servers cyber security news
  • Researchers Uncover Malicious NPM Packages Stealing Data from Apps and Web Forms cyber security news
  • Cardano Spikes as Supporters Anticipate Vasil Hard Fork, Poll Shows ADA Expected to Hit $1 by the End of June – Bitcoin News bitcoin news
  • Crypto Market Crash Wipes Millions of Dollars From North Korea’s Kitty of Stolen Cryptocurrencies – Bitcoin News bitcoin news
  • Russian IoT Botnet Designed to Run Social Media Disinformation Campaigns cyber security news
  • Cryptocurrency Exchange Kucoin Raises $150 Million in Pre-Series B Funding Round, Reaches $10 Billion Valuation – Bitcoin News bitcoin news
  • Lebanon Inflation Rate Surges to 211%, Economist Steve Hanke Recommends a Currency Board – Economics Bitcoin News bitcoin news

Copyright © 2022 Cyber Security And Bitcoin Blockchain News.

Powered by PressBook News Dark theme