Status: Unconfirmed
Owner: ----
Labels: Type-Bug Pri-2 OS-All Area-Misc

New issue 9485 by alexsoccerboy: Most Visited Security Issue
http://code.google.com/p/chromium/issues/detail?id=9485

Chrome Version       : <Copy from: 'about:version'>
URLs (if applicable) :
Other browsers tested:
   Add OK or FAIL after other browsers where you have tested this issue:
      Safari 4:
   Firefox 3.x:
          IE 7:
          IE 8:

What steps will reproduce the problem?
1. Allowing users to block entire websites from showing up in Most Visted.
2.
3.

What is the expected result?
Security.  As it is now, thumbnails of every site, including sensitive
information are visible by simply opening a new tab.  My brokerage site,
for example, had graphs clearly visible, and with efforts to enhance such a
thumbnail, it's doubtless that someone could enlarge these thumbnails and
make out sensitive/secure information by simply opening chrome and opening
a new tab.  At the very least users need to be able to block thumbnails of
certain sites.  Incognito mode, since it's not the default, would probably
be missed by many users.  On a shared, stolen, or unsecured computer, this
has serious implications.

What happens instead?


Please provide any additional information below. Attach a screenshot if
possible.

Even if it were an easily visible option near Chrome's address bar(more
than going to options and enabling incognito mode), asking users to
remember to change profiles from "normal" to "secure" when they go to a
site that they wouldn't want a thumbnail saved, is asking for a high
failure rate and it poses a security issue.

I would attach a screenshot...but I don't want you all looking at
thumbnails of my online banking and brokerage account!

--
You received this message because you are listed in the owner
or CC fields of this issue, or because you starred this issue.
You may adjust your issue notification preferences at:
http://code.google.com/hosting/settings

--~--~---------~--~----~------------~-------~--~----~
Automated mail from issue updates at http://crbug.com/
Subscription options: http://groups.google.com/group/chromium-bugs
-~----------~----~----~----~------~----~------~--~---

Reply via email to