Previous Thread
Next Thread
Print Thread
Rate Thread
#9563 09/08/06 04:36 AM
Joined: Sep 2006
Posts: 4
C
cat Offline OP
Junior Member
OP Offline
Junior Member
C
Joined: Sep 2006
Posts: 4
I have reason to believe that someone has stolen my cookies and now i have some questions.

Is it possible that someone could place a cookie grabber on say the main menu of a forum and then get all my cookies?

Could those cookies then be used to show that person what web sites i visit, and be used to track my activity online?

Could the person who stole cookies then gain access using my username and password and cookies to other web sites?

If they can get access is deleting cookies and changing my password enough to stop them from accessing it again or will the old cookie still work?

Is there some other way they could access anothe rsite i use and get information about who is there and ip addresses?

Some web sites won't work if cookies are not allowed. How to i protect myself from cookie grabbers when cookies are essential and convenient?

I use adaware, anti virus software and a firewall, is there anything else i should be using to prevent security breaches?

#9564 09/08/06 01:32 PM
Joined: Jun 2003
Posts: 807
Likes: 2
G
UGN Super Poster
Offline
UGN Super Poster
G
Joined: Jun 2003
Posts: 807
Likes: 2
Cookies are basically a text file stored on your computer. The data they contain is sent to webservers that the cookie says it should be sent to. The way browsers and cookies work, only the cookies for a certain website will be sent to that website. If someone used some sort of cookie stealer to steal cookies, those cookies would be for the domain in question. So, in short, just visiting a page, unless the browser itself is vulnerable (like Internet Explorer), will not reveal cookie data and browsing history. For a site where your cookies were stolen, yes, changing the password for the account will usually prevent the cookies from being used to acess your account.

It's not your resonsibility to protect yourself from cookie stealers as long as you use up-to-date browsers, such as Firefox. If your cookies are stolen, it's because the site or server itself is insecure.

#9565 09/08/06 03:50 PM
Joined: Sep 2006
Posts: 4
C
cat Offline OP
Junior Member
OP Offline
Junior Member
C
Joined: Sep 2006
Posts: 4
thank you smile

but if it wasnt cookies i have more questions im afraid.

say someone (an admin) from one forum claims to be able to tell who is logged in when on another forum ,completly unrealted to her server and not the dame type of bb, and completely private forum that she has no acccess to, and claims to have ip logs proving you were logged into both sites at the same time, and has tracked your movement between both sites. is that possible somehow? how would i stop her from doing the same thing again?

#9566 09/08/06 04:18 PM
Joined: Jun 2003
Posts: 807
Likes: 2
G
UGN Super Poster
Offline
UGN Super Poster
G
Joined: Jun 2003
Posts: 807
Likes: 2
Well, the only way they would be able to do that is if you were infected with some sort of malware, which might be possible, though unlikely. The other possibility is that this person has some sort of access to the server though subversive means. And, it's (almost) always possible to tell where you were right before coming to another site by way of the "referer" header, which has many legitimate and useful purposes.

Though, from what I can gather, it sounds like this person is just trying to scare you, in some sort of attempt to extort you or otherwise gain something. Considering your reaction, it seems to be working. You might try stepping back and thinking about the possibility of being socially engineered.

#9567 09/08/06 04:51 PM
Joined: Sep 2006
Posts: 4
C
cat Offline OP
Junior Member
OP Offline
Junior Member
C
Joined: Sep 2006
Posts: 4
i am sure she is just trying to scare me. and i am playing right into her hands by being worried. althougb unless she happens to read here she has no idea just how concerned her claims made me.

would the referrer header show if her site was opened in a new tab from a bookmark? what about if in a new window or would it have to be a new browser?

sorry i know im probably being really annoying but it is driving me crazy trying to figure it out lol

#9568 09/08/06 05:29 PM
Joined: Jun 2003
Posts: 807
Likes: 2
G
UGN Super Poster
Offline
UGN Super Poster
G
Joined: Jun 2003
Posts: 807
Likes: 2
I don't know whether or not you could tell the refering site if it was opened in a new tab, though I doubt it. You might try disabling the referer information sent to that site, which you can learn how to do in your browser documentation.

#9569 09/08/06 05:38 PM
Joined: Sep 2006
Posts: 4
C
cat Offline OP
Junior Member
OP Offline
Junior Member
C
Joined: Sep 2006
Posts: 4
i found a firefox extension to do that, so have that set up now.

thanks for all your help ghost.

cat #41067 10/08/06 11:41 AM
Joined: Nov 2003
Posts: 478
A
UGN Member
Offline
UGN Member
A
Joined: Nov 2003
Posts: 478
Ghost is cool like that, I wonder if he remembers helping me with the router login.



Link Copied to Clipboard
Member Spotlight
Posts: 30
Joined: June 2002
Forum Statistics
Forums41
Topics33,840
Posts68,858
Average Daily Posts1
Members2,176
Most Online3,253
Jan 13th, 2020
Latest Postings
Where and how do you torrent?
by danni75 - 03/01/24 05:58 AM
Animation,
by JohanKaariainen - 08/15/19 01:18 AM
Blackbeard.....
by Gremelin - 10/03/18 07:02 PM
my old account still exists!
by Crime - 08/10/18 02:47 PM
Okay WTF?
by HenryMiring - 09/27/17 01:45 AM
The History Thread...
by Gremelin - 08/11/17 12:11 PM
My friend NEEDS your HELP!
by Lena01 - 07/21/17 12:06 AM
I'm having fun with this guy.
by gabithompson730 - 07/20/17 01:50 AM
I want to upgrade my phone
by gabithompson730 - 07/20/17 01:49 AM
Doom 3
by Cyrez - 09/11/14 08:58 PM
Amazon Gift Card Generator/KeyGen?te
by Gecko666 - 08/22/14 09:21 AM
AIM scene 99-03
by lavos - 09/02/13 08:06 AM
Planetside 2
by Crime - 03/04/13 07:10 AM
Beta Testers Wanted
by Crime - 03/04/13 06:55 AM
Hello Everyone
by Gremelin - 02/12/12 06:01 PM
Tracfone ESN Generator
by Zanvin Green - 01/18/12 01:31 PM
Python 3 issue
by Testing - 12/17/11 09:28 PM
tracfone airtime
by Drache86 - 07/30/11 03:37 AM
Backdoors and the Infinite
by ZeroCoolStar - 07/10/11 03:52 AM
HackThisZIne #12 Releaseed!
by Pipat2 - 04/28/11 09:20 PM
gang wars? l33t-wars?
by Gremelin - 04/28/11 05:56 AM
Consolidate Forums
by diggin2deep - 04/21/11 10:02 AM
LAN Hacking Noob
by Gremelin - 03/12/11 12:42 AM
Top Posters
UGN Security 41,392
Gremelin 7,203
§intå× 3,255
SilentRage 1,273
Ice 1,146
pergesu 1,136
Infinite 1,041
jonconley 955
Girlie 908
unreal 860
Top Likes Received
Ghost 2
Crime 1
Ice 1
Dartur 1
Cyrez 1
Powered by UBB.threads™ PHP Forum Software 7.7.5