Home WINDOWS HOW-TO Chrome browser autocomplete feature may pose a security risk to users

Chrome browser autocomplete feature may pose a security risk to users

Chrome browser autocomplete feature may pose a security risk to users


Browser AutofilThe l function allows you to store user credentials such as name, email address, address, phone number, etc. so that you don’t have to enter them manually over and over again. While most users see AutoComplete as a convenience that makes it easier to enter credentials, it can also lead to great security risks, leading to financial loss and personal data threat.

Autocomplete feature puts users at security risk

If you know about Chrome autofill you may notice that Chrome AutoComplete allows you to save postal addresses (which contain information such as name, city, phone, postal code, email address, etc.) and a credit card (which contains information such as cardholder name, number and expiration date).

Now every piece of that data (except credit card information) can be synced to your Google account without you even realizing it. This potentially increases the risk of your information being leaked to 3 people.rd third party attackers if your google account credentials are leaked.

Information can leak through hidden fields

Imagine another scenario where a site asks you to enter your name and email address to fill out a form. While the autocomplete feature will automatically fill in the information by name and email address, you can safely assume that this is the only information you’ve shared based on the fields you saw in the form. But here’s where a potential leak could have occurred.

A site developer can add hidden fields to a page that are not actually “really hidden” from you, but appear outside of the visible screen. Thanks to the autocomplete feature, your browser automatically fills in the fields that you can see as well as those that cannot be seen. Thus, you always run the risk of accessing your personal data without even knowing the hidden fields.

Below is a simple demo of form fields hidden from the user in Google Chrome. It shows that although the form only asked for a name and email address, the autocomplete feature sent additional information such as email address, phone number, address, and more as soon as the user clicks the Submit tab.

How to avoid the risk

One impractical approach is to parse the source code of the web page before submitting anything. However, this is not possible in practice and also requires technical know-how. Hence, the best approach would be to disable the autocomplete feature permanently.

This is how you can turn off the autocomplete feature in Chrome.

How to turn off autocomplete in Chrome

Step 1. Download Google Chrome browser to your computer

Step 2. Click in the upper right corner of the browser window to open Settings.

Step 3. Click Advanced Settings to scroll down to the Passwords & Forms section.

Step 4. Uncheck “Enable One-Click AutoFill for Web Form Fills” and “Prompt to save my web passwords.”

Closing Comments

While the autocomplete feature is a significant time-saver, it is prone to data leaks and malware intrusions. It is highly recommended that you never let the browser take care of your passwords, no matter how secure they are.

While browsers allow you to interact with the Internet World, they also expose your system to various vulnerabilities and attacks. A browser can be an intruder’s entry point into your computer, so protecting your browser should always be a priority.

Here are eight tips to keep your browser secure.

  1. Keep your browser up to date as authors continue to add protection against the latest threats.
  2. Use antivirus software and keep it up to date
  3. Never click on suspicious emails
  4. Update your operating system
  5. Block unnecessary pop-ups and never click on them
  6. Use minimal plugins
  7. Never use the remember my password feature, especially on public domains.
  8. Don’t download files from untrusted sources

Details on the website Github… A bug report has also been submitted to Mozilla. here

Autocomplete function


Source link



Please enter your comment!
Please enter your name here