republican-creole
Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security » Please Prove My Father Wrong!
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
hijack this log computer 2 »
« IP address blocking  

Jason Levine
Premium
join:2001-07-13
USA

Re: Please Prove My Father Wrong!

said by mziemba See Profile:
Now my dad is all pissed off be cause I'm visiting all of these sites that are hacking into me. Yes you read that right. By simply visiting a website I can be hacked because of the cookies. Cookies can do EVERYTHING according to my dad.
Let me guess: He probably thinks that sites can also read your e-mail address via cookies and then spam you.

It really is a shame that people overreact so much to cookies. They really aren't much of a threat. The worst that can be done with cookies is that a banner ad network can track which sites you've been to via 3rd party cookies. Disable 3rd party cookies or delete their cookies, and all that information is lost.

As far as hacking "through" cookies goes, cookies are just plain text files. A website (for example, BBR) will store a cookie on your hard drive containing some information (for example, your username/password) that it will need later. This information is stored in plain text and can only be accessed by the website that stored it. (Security holes notwithstanding.)

Any hacker that is trying to gain access to your system won't do it by writing a small text file to your computer. They'll do it by trying to get you to run a program, become infected with a virus/worm, visit a site with malicious ActiveX content, or exploit a security hole that you haven't patched. Cookies are useless for hackers attempting to gain entry. Of course, once a hacker gains access to your system, all bets are off and they might read your cookies to get some personal information that is stored there.

said by mziemba See Profile:

(P.S. I'm willing to bet anyone $100 when I show him this he'll say "See you just gave out more of our information. you told them our router and now they can do more hacking!")

I won't take that bet. I know about controlling fathers who don't know much about technology. (Or rather, know just enough terminology to be dangerous.)

I agree that any information that you show him will be quickly written off as not proving him wrong. I'm a big proponent for educating users who don't know much, but, unfortunately, there are some people in this world that you just can't reason with. They think they know everything there is to know and any evidence to the contrary must be mistaken. With these folks, it's sometimes best just to either nod and then do your own thing. Either that or have some fun with their mis-understanding of technology. ("Yes, it turns out that the hacker tried to come in through the cookie, but luckily I was able to inject some JavaScript into his system via the TCP port in the nick of time." )
--
-Jason Levine
http://www.jasons-toolbox.com/
http://www.PCQandA.com/
http://www.urateit.com/

dp
Go Steelers
Premium,MVM
join:2000-12-08
Greensburg, PA
·Verizon Online DSL

Re: Please Prove My Father Wrong!

said by Jason Levine See Profile:
.... With these folks, it's sometimes best just to either nod and then do your own thing. Either that or have some fun with their mis-understanding of technology
I find the head nod works best for me
--
Write your questions down on the back of a $20 dollar bill and send them to me
Forums » Up and Running » Security » Securityhijack this log computer 2 »
« IP address blocking  


Sunday, 06-Dec 12:53:10 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [163] Comcast Releasing Promised Usage Meter
· [147] Avast Antivirus Has Gone Mad
· [135] The Bandwidth Hog Does Not Exist
· [128] Comcast Makes NBC Universal Acquisition Official
· [105] Graduate Student Unveils Sprint's GPS Sharing With Feds
· [101] Google Invades ISP, OpenDNS Turf With Google Public DNS
· [85] FCC Ponders Moving From PSTN To IP Voice
· [82] Latest Consumer Reports Survey Not Kind To AT&T
· [81] New Bill Aims To Limit ETFs
· [75] Sprint Defuses GPS Privacy Media Bomb
Most people now reading
· Bulb for garage door opener [Home Repair & Improvement]
· Is there any true cure for, or way to prevent, a hangover? [General Questions]
· Problems with rlslog.net? [TekSavvy]
· Windows 7 boot manager editing questions [Microsoft Help]
· Wife might have to work in.... Iowa for a few months!!! [General Questions]
· False positive in Avast! or is it real? [Security]
· Connecting to Google Voice Via SIP [VOIP Tech Chat]
· How fast is your upstream internet connection? [General Questions]
· 3.x Feral Druid - Bear Tanking Guide [World of Warcraft]
· [DNS] Google's public DNS... performance increases? [Comcast HSI]