---
title: Jericho's Cybersecurity Glossary | Clickjacking
description: Clickjacking is a type of attack where a malicious actor tricks a user into clicking on an invisible or disguised element on a web page, leading them to perform unintended actions such as downloading malware or sharing personal information.
---

[Jericho Security | Glossary](http://www.jerichosecurity.com/glossary)

# [Jericho's Cybersecurity Glossary | Clickjacking](http://www.jerichosecurity.com/glossary/clickjacking)

 Written by [Jericho Security Team](http://www.jerichosecurity.com/glossary/author/jericho-security-team) | September 27, 2024

#### *Definition:*

Clickjacking is a type of attack where a malicious actor tricks a user into clicking on an invisible or disguised element on a web page, leading them to perform unintended actions such as downloading malware or sharing personal information.

#### *Use Cases:*

- Used by attackers to trick users into clicking hidden buttons or links that perform malicious actions.
- Employed in phishing attacks to steal sensitive information, such as login credentials.

#### *Related Terms:*

- [Phishing](https://www.jerichosecurity.com/glossary/phishing)
- [Cross-Site Scripting (XSS)](https://www.jerichosecurity.com/glossary/cross-site-scripting)
- [Malware](https://www.jerichosecurity.com/glossary/malware)
- [Social Engineering](https://www.jerichosecurity.com/glossary/social-engineering)

#### *Questions and Answers:*

- **How do attackers execute a clickjacking attack?**Attackers layer malicious content over legitimate web pages using iframes or similar techniques, tricking users into clicking on hidden or disguised elements.
- **What are the consequences of a clickjacking attack?**Clickjacking can lead to unwanted actions such as downloading malware, sharing sensitive information, or making unintended financial transactions.
- **How can websites defend against clickjacking?**Websites can implement frame-busting techniques, such as the X-Frame-Options HTTP header, to prevent malicious framing of their content.

[View full post](http://www.jerichosecurity.com/glossary/clickjacking)

```json
{
  "@context" : "http://schema.org",
  "@type" : "BlogPosting",
  "author" : {
    "@type" : "Person",
    "name" : "Jericho Security Team"
  },
  "dateModified" : "2024-09-29T09:59:43.692Z",
  "datePublished" : "2024-09-27T22:20:57Z",
  "headline" : "Clickjacking",
  "image" : {
    "@type" : "ImageObject",
    "height" : 720,
    "url" : "https://40243630.fs1.hubspotusercontent-na1.net/hubfs/40243630/assets/images/jericho-featured-image.jpg",
    "width" : 1280
  },
  "mainEntityOfPage" : "http://www.jerichosecurity.com/glossary/clickjacking",
  "publisher" : {
    "@type" : "Organization",
    "logo" : {
      "@type" : "ImageObject",
      "height" : 60,
      "url" : "/hs/hsstatic/content_shared_assets/static-1.4092/img/default-amp-logo.png",
      "width" : 60
    },
    "name" : "Jericho Security | Glossary"
  }
}
```