[advanced search]
NamePros Domain Auction
Live Event This Thursday at 6PM EST - Prebidding open now
14 members in the live chat room. Join Chat!
Register Rules & FAQ NP$ Store Active Threads Today's Posts Domain Services

System Maintenance: NamePros will be offline for 20 minutes at the top of the hour (4AM EST)

Go Back   NamePros.Com > Design and Development > Programming > CODE
User Name
Password

Closed Thread
 
Thread Tools
Old 01-09-2008, 02:26 AM   · #1
music_man
NamePros Member
 
Name: William Parry
Location: New Zealand
Trader Rating: (1)
Join Date: Jun 2005
Posts: 94
NP$: 13.00 (Donate)
music_man is on a distinguished road
Form security script

Hi,

This is an onscreen keyboard written in js to help against keyloggers.

http://williamparry.com/scripts/formSecurity/index.html

Feedback appreciated.

Cheers


Please register or log-in into NamePros to hide ads
__________________
Self-service
My homepage
music_man is offline   Reply With Quote
Old 01-09-2008, 05:20 AM   · #2
DeViAnThans3
Spamzor.com
 
DeViAnThans3's Avatar
 
Name: Hans
Location: Belgium
Trader Rating: (35)
Join Date: Apr 2006
Posts: 442
NP$: 22.35 (Donate)
DeViAnThans3 is a name known to allDeViAnThans3 is a name known to allDeViAnThans3 is a name known to allDeViAnThans3 is a name known to allDeViAnThans3 is a name known to allDeViAnThans3 is a name known to all
Looks nice! For sites which require or want a high security, this could be quite suitable!

What I'ld do additionally, is making sure that people can't type anything in there (onkeypress javascript). Or are at least warned that they should use the onscreen keyboard for their own safety.

Note though that this form of security only can handle keyloggers. Network sniffers will still find the information very easily.
__________________
Useless is cool!
Work From Home Opportunities -
1 link ... 1 month ... 5 NP$ ] Real bargain! Limited to 1 month.
DeViAnThans3 is offline   Reply With Quote
Old 01-09-2008, 09:10 AM   · #3
maximum
If only you knew...
 
maximum's Avatar
 
Name: -Unknown-
Location: Inside your head...
Trader Rating: (16)
Join Date: Oct 2005
Posts: 852
NP$: 24.00 (Donate)
maximum has much to be proud ofmaximum has much to be proud ofmaximum has much to be proud ofmaximum has much to be proud ofmaximum has much to be proud ofmaximum has much to be proud ofmaximum has much to be proud ofmaximum has much to be proud ofmaximum has much to be proud ofmaximum has much to be proud of
Child Abuse Special Olympics Save a Life Baby Health Autism
William, thanks for sharing. Nice idea
Originally Posted by DeViAnThans3
....
What I'ld do additionally, is making sure that people can't type anything in there (onkeypress javascript). Or are at least warned that they should use the onscreen keyboard for their own safety. ....

Good idea to add this, IMHO.
Originally Posted by DeViAnThans3
Looks nice! For sites which require or want a high security, this could be quite suitable!
....
Note though that this form of security only can handle keyloggers. Network sniffers will still find the information very easily.

Wouldn't such be smart to be using SSL, etc., as part of the site's overall "high" security?
__________________
maximum is offline  
  Reply With Quote
Old 01-09-2008, 12:58 PM   · #4
gamescoper
NamePros Member
 
Trader Rating: (0)
Join Date: Jan 2008
Posts: 115
NP$: 321.85 (Donate)
gamescoper is an unknown quantity at this point
great script brilliant idea for online banking as well and if you can set it that the user cannot change the security level even better
gamescoper is offline   Reply With Quote
Old 01-09-2008, 12:59 PM   · #5
music_man
NamePros Member
 
Name: William Parry
Location: New Zealand
Trader Rating: (1)
Join Date: Jun 2005
Posts: 94
NP$: 13.00 (Donate)
music_man is on a distinguished road
Thanks for the feedback!

Your right that it doesn't prevent network sniffing, but as maximum said, SSL should cover that (and SSL encryption is better than any JS encryption).

gamescoper - it was originally designed to have the security setting set only by webmaster but I thought that if the user wants something easier to use (but less secure) then they can set it themselves.

Perhaps I should add a variable in the embed script that states whether the user can set their own security?

Cheers

William
__________________
Self-service
My homepage
music_man is offline   Reply With Quote
Old 01-09-2008, 08:33 PM   · #6
xrvel
xrvel is cruel :-)
 
xrvel's Avatar
 
Trader Rating: (49)
Join Date: Nov 2007
Posts: 1,200
NP$: 532.18 (Donate)
xrvel has much to be proud ofxrvel has much to be proud ofxrvel has much to be proud ofxrvel has much to be proud ofxrvel has much to be proud ofxrvel has much to be proud ofxrvel has much to be proud ofxrvel has much to be proud ofxrvel has much to be proud of
Cool

Nice script.
I tried to resize my browser and the 'keypad window' still on the top right part of my browser

Kurniawan.
__________________
Xrvel | Various online tools | Free Proxy List
Proxy ( i'm ready for link exchange )
xrvel is offline   Reply With Quote
Closed Thread

NamePros is a revenue sharing forum.


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Forum Jump


Site Sponsors
Skilled Graphics SocialDN.com SocialDN.com
Advertise your business at NamePros
All times are GMT -7. The time now is 01:11 AM.


Powered by: vBulletin Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 2.4.0