Hovering Patterns: Clickjacking Defense Technique


Ahmed Anas, Sherif Khatab, Akram Salah


Vol. 18  No. 2  pp. 130-137


Clickjacking attacks is one of the evolving attacks that targets users web surfing integrity. Through the attack observation and analysis, we developed a new technique that enforces user awareness of sensitive UI actions he is about to perform. Proposed technique enforces user experience integrity by asking the user to interact with visual component through hovering over randomly generated points where a summary text of the critical action will be explicitly outlined. The technique is protected by nature against Clickjacking attacks as it requires clicking to proceed with the required actions. The technique has trivial performance effect and can be integrated easily within a web widget.


Clickjacking, The random patterns, Anti-Clickjacking