Clickjacking attack applies on user interface, UI, sometimes it is called User Interface Redressing Attack; this attack is done by covering original web user interface with a deceivable invisible layer. The goal of this technique is to trick visitors to do an action without them wanting to do it,
for example: tricking user to open a fake malicious link which is called hijacking clicks and entering credentials Keystroke Hijacking owasp.
Redressing user interface can be performed with CSS styling properties to create suitable environment for tricking users. There are two layers, one is original and the other is a fake layer which is created by the attacker and is invisible; when user enters data into the web page form, the data goes to the attacker first.