Gathering video from a webcam can be as simple as tricking the user into clicking on an innocuous-looking link in a Web page, a process known as clickjacking. |
In plain English, clickjacking lets hackers and scammers hide malicious stuff under the cover of the content on a legitimate site. |
The danger of clickjacking is that clicking on a hidden Web element can result in a transaction that you didn't want. |
One was a clickjacking vulnerability, in which a user might be unwittingly manipulated into clicking something undesirable. |
Many clickjacking scams are intended to herd users to sites that pay the perpetrator for page views, and are mostly harmless compared to other malicious activity. |
While Facebook reacted quickly to the attack, it's interesting to note the propagation method was based on clickjacking rather than on XSRF as some early blog posts said. |