CGISecurity Logo

Keystroke Logging Javascript

"A full disclosure post today had an exploit that used javascript in
browsers to selectively "steal" keystrokes from the user typing and
channeling it into the file upload field. " – ISC

Article Link: http://isc.sans.org/diary.php?storyid=1386