Why Chrome’s Autocomplete is not Secure and How you can Turn it Off

The Chrome browser which we are all using is not as secure as it seems to be. It has got a vulnerability which is yet to be fixed. This vulnerability was first outlined by the good people at Yoast way back in 2013 itself.

Basically, by using this exploit a hacker can hide form input fields on a web page, which Chrome will then fill in with your personal information if you opt to use its autocomplete feature.

Have a look at how this exploit actually works –

Browser Autofill Phishing
Source: anttiviljami (GitHub)

I therefore recommend everyone to turn off Chrome’s autofill feature immediately to be on the safer side. The sooner you do it, better will it be.

How to turn off autocomplete in Chrome

Step 1 – Paste chrome://settings/autofill into Chrome’s address bar and hit enter.

Step 2 – Now, press escape or use the ‘x’ button at top right corner to exit the ‘Autofill settings‘ modal box.

Step 3 – Uncheck the Enable Autofill to fill out web forms in a single click checkbox.

Disable Autofill on Chrome

That’s it. You have now successfully disabled Chrome’s auto complete feature. I can now assure you that hackers won’t be able to steal your personal data using this well-known exploit.

Pro Tip: Do not ever submit personal or sensitive data to websites you don’t trust.

There is also an extension for Chrome to check what was auto filled by the browser. You can get it from GitHub for free. You might also want to read my list of useful extensions for Chrome browsers.

Advertisements

5 thoughts on “Why Chrome’s Autocomplete is not Secure and How you can Turn it Off

    1. Though it is not a very serious issue, it is still worth debating about. Let’s hope the Chrome devs fix this issue as soon as possible in the coming updates.

      Like

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s