Keylogger

Malware that records key presses

Keyloggers are commonly trojans, implanted on a system to monitor the keys pressed and thus record any sensitive data, such as passwords, entered by the user.

Data thus gathered is forwarded to a third party, where it can be used in fraud and cybercrime. More sophisticated keyloggers include their own forwarding methods, while simpler ones may simply log the data to a file which is then picked up and passed on by a separate part of an infection.

Some keylogging software claims legitimate purposes, such as parents monitoring their children's online activities. As well as software keyloggers, various forms of hardware keyloggers also exist, for example sitting between the keyboard cable and the socket on the computer, or sniffing data sent by wireless keyboards.

As well as using anti-malware software to block and remove such software, many techniques have been developed to combat the loss of vital data to keyloggers. These include the use of encrypted password storage systems, keyboard reconfiguration, on-screen virtual keyboards, voice recognition and single-use passwords, among others.

Related news articles

Webmail data leak hype deflated

Rumoured phishing explosion grabs headlines, reality much more mundane.

09 October 2009

Keyloggers used to loot US county

$415,000 sneaked from local government funds.

07 July 2009

China-Tibet row spills over into malware attacks

Both sides of debate targeted to spread malicious code.

16 April 2008

Habbo trojan steals passwords

Extension decorates your room... with malware.

21 February 2008

  see all related news stories


Poll

Do you use the same password(s) across multiple websites?
I use the same password for all sites
I have a number of passwords but use the same for some sites
I use a different password for each site
I don't sign up to any sites that require a password

Leave a comment
View 4 comments

Jobs Recruit Sidebar

Jobs

In Virus Bulletin's jobs pages among others:
Virus Bulletin currently has 190,989 registered users.