Friday, September 12, 2008

[Whitepaper] Defeating Virtual Keyboards

Around mid of year 2005 I was bit intrigued to write a proof-of-concept keylogger to capture texts emulated using virtual keyboards. The PoC keylogger was publicly released on 5th Aug, 2005 to demonstrate the hack for a particular banking site however the fact that remains same is any site which uses similar VK or OSK can be defeated. As you read this whitepaper, you’ll understand how this particular approach of defeating OSK and VK cannot be easily tricked unlike ordinary keyloggers. This paper was public released by Hakin9 magazine in their Nov, 2007 issue and as per the copyrights contract I am allowed to publish the free copy after six months of their release. Downlaod this whitepaper here.

No comments: