{"id":10591,"date":"2017-11-24T05:30:19","date_gmt":"2017-11-24T13:30:19","guid":{"rendered":"http:\/\/www.palada.net\/index.php\/2017\/11\/24\/news-4363\/"},"modified":"2017-11-24T05:30:19","modified_gmt":"2017-11-24T13:30:19","slug":"news-4363","status":"publish","type":"post","link":"https:\/\/www.palada.net\/index.php\/2017\/11\/24\/news-4363\/","title":{"rendered":"Websites see everything you do"},"content":{"rendered":"<p><strong>Credit to Author: David Buxton| Date: Fri, 24 Nov 2017 12:52:19 +0000<\/strong><\/p>\n<p><span style=\"color: #000000;\"><span style=\"font-family: Calibri, serif;\"><span style=\"font-size: small;\">Some of the largest websites on the Internet use third-party software to track everything you do on their sites \u2014 including what you type, click, and scroll through.<\/span><\/span><\/span><\/p>\n<p><span style=\"color: #000000;\"><span style=\"font-family: Calibri, serif;\"><span style=\"font-size: small;\">Basic website tracking \u2014 page views, searches \u2014 isn&#8217;t news to anyone who pays attention to issues of online privacy and security. We&#8217;ve discussed\u00a0<a href=\"https:\/\/usa.kaspersky.com\/blog\/web-tracking-in-numbers\/7123\/\">website users being tracked<\/a>, and we also offer a useful primer series on\u00a0<a href=\"https:\/\/usa.kaspersky.com\/blog\/internet-ads-101\/7606\/\">how Internet ads work<\/a>. The scope and depth of the tracking may unnerve even jaded readers, though. New research investigated the use of\u00a0<a href=\"https:\/\/en.wikipedia.org\/wiki\/Session_replay\">session replay<\/a><span lang=\"en-GB\">\u00a0<\/span>scripts, which track what exactly users do while browsing, on some of the Web&#8217;s top sites.<\/span><\/span><\/span><\/p>\n<p> <a href=\"https:\/\/d1srlirzdlmpew.cloudfront.net\/wp-content\/uploads\/sites\/92\/2017\/11\/24062603\/website-tracking.jpg\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/d1srlirzdlmpew.cloudfront.net\/wp-content\/uploads\/sites\/92\/2017\/11\/24062603\/website-tracking-1024x672.jpg\" alt=\"\" width=\"1024\" height=\"672\" class=\"aligncenter size-large wp-image-20279\" \/><\/a> <\/p>\n<p><span style=\"color: #000000;\"><span style=\"font-family: Calibri, serif;\"><span style=\"font-size: small;\">These sites are capturing everything you type, mouse over, and click on. You know, sort of like a\u00a0<span style=\"color: #0563c1;\"><span lang=\"zxx\"><u><a href=\"https:\/\/www.kaspersky.co.uk\/blog\/keylogger\/1573\/\"><span lang=\"it-IT\">keylogger<\/span><\/a><\/u><\/span><\/span>. For performance diagnostics, some of it makes sense: When you run a website that can have hundreds of thousands of pages, you need to learn what people are doing on them and if any pages are broken or not working as intended.<\/span><\/span><\/span><\/p>\n<p><span style=\"color: #000000;\"><span style=\"font-family: Calibri, serif;\"><span style=\"font-size: small;\">Problems arise, however, because the software is capable of tracking a great deal of information that isn&#8217;t necessarily useful for website developers, and because third parties have access to that information. A group of researchers from Princeton University\u00a0<a href=\"https:\/\/freedom-to-tinker.com\/2017\/11\/15\/no-boundaries-exfiltration-of-personal-data-by-session-replay-scripts\/\">reported on the phenomenon<\/a>, saying: <em>&#8220;<i>Collection of page content by third-party replay scripts may cause sensitive information such as medical conditions, credit card details and other personal information displayed on a page to leak to the third-party as part of the recording. This may expose users to identity theft, online scams, and other unwanted behavior<\/i>.&#8221;<\/em><\/span><\/span><\/span><\/p>\n<p><span style=\"color: #000000;\"><span style=\"font-family: Calibri, serif;\"><span style=\"font-size: small;\">As the researchers also pointed out, this sort of playback software is <em<i>>&#8221;like somebody looking over your shoulder,&#8221;<\/i><\/em> while you&#8217;<span lang=\"pt-PT\">re online.<\/span>\u00a0Watch the video below to learn more about how it works.<\/span><\/span><\/span><\/p>\n<p><span class='embed-youtube' style='text-align:center; display: block;'><iframe  src='https:\/\/www.youtube.com\/embed\/l0Yc8s0DTZA?version=3&#038;rel=1&#038;fs=1&#038;showsearch=0&#038;showinfo=1&#038;iv_load_policy=1&#038;wmode=transparent' width=\"100%\" height=\"420\" frameborder=\"0\" ><\/iframe> <\/span><\/p>\n<p><span style=\"color: #000000;\"><span style=\"font-family: Calibri, serif;\"><span style=\"font-size: small;\">With that sort of recording also comes additional information that, if (or <em>when<\/em>) leaked, could be dangerous indeed. The research noted that this software has the ability to:<\/span><\/span><\/span><\/p>\n<ul>\n<li><span style=\"color: #000000;\"><span style=\"font-family: Calibri, serif;\"><span style=\"font-size: small;\">Record passwords entered \u2014 and, although the developers tried to ensure that any password entered was redacted, it wasn&#8217;t perfect, and it didn&#8217;t work fully on mobile versions of sites.<\/span><\/span><\/span><\/li>\n<li><span style=\"color: #000000;\"><span style=\"font-family: Calibri, serif;\"><span style=\"font-size: small;\">Capture sensitive data such as credit card numbers and dates of birth.<\/span><\/span><\/span><\/li>\n<li><span style=\"color: #000000;\"><span style=\"font-family: Calibri, serif;\"><span style=\"font-size: small;\">Record data input into text boxes, even if that data isn&#8217;t submitted to the site \u2014 in other words, even if you don&#8217;t click &#8220;Search&#8221; or &#8220;Submit&#8221; or press Enter.<\/span><\/span><\/span><\/li>\n<\/ul>\n<p> <input type=\"hidden\" class=\"category_for_banner\" value=\"kis-trial-privacy\" \/> <\/p>\n<p><span style=\"color: #000000;\"><span style=\"font-family: Calibri, serif;\"><span style=\"font-size: small;\">So, what can you do to stop this sort of tracking? Our flagship protection \u2014\u00a0<a href=\"http:\/\/www.kaspersky.com\/advert\/multi-device-security?redef=1&amp;THRU&amp;reseller=gl_socmed_pro_ona_smm__onl_b2c_kasperskydaily_lnk____kismd___\">Kaspersky Internet Security<\/a>\u00a0and\u00a0<a href=\"http:\/\/www.kaspersky.com\/advert\/total-security-multi-device?redef=1&amp;THRU&amp;reseller=gl_socmed_pro_ona_smm__onl_b2c_kasperskydaily_lnk____ktsmd___\">Kaspersky Total Security<\/a>\u00a0\u2014 blocks it and many other kinds of tracking tools. We call this feature\u00a0<a href=\"https:\/\/www.kaspersky.com\/blog\/enhanced-privacy-kaspersky-2016\/9562\/\">Private Browsing<\/a>, and if you value your online privacy you should give it a try.<\/span><\/span><\/span><\/p>\n<div><\/div>\n<p><a href=\"https:\/\/www.kaspersky.com\/blog\/session-replay-scripts\/20282\/\" target=\"bwo\" >https:\/\/blog.kaspersky.com\/feed\/<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><strong>Credit to Author: David Buxton| Date: Fri, 24 Nov 2017 12:52:19 +0000<\/strong><\/p>\n<p>Websites are logging your clicks, keystrokes, and more<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[10425,10378],"tags":[11533,3492,14019,32,5897,10436,16724,11241,16725],"class_list":["post-10591","post","type-post","status-publish","format-standard","hentry","category-kaspersky","category-security","tag-ads","tag-kaspersky-internet-security","tag-keyloggers","tag-news","tag-privacy","tag-private-browsing","tag-session-replay-scripts","tag-tracking","tag-web"],"_links":{"self":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/10591","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=10591"}],"version-history":[{"count":0,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/10591\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=10591"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=10591"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=10591"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}