email

Gmail Hacked

Posted in Gmail, Google, News, Security, email by Chris Weber on January 1st, 2007

gmail mass email deletionThe problems continue for Gmail users. A vulnerability was found in the Gmail web based email application that allowed anyone to see a Gmail user’s contacts. The vulnerability came from the fact that apparently Gmail stores the users contacts in a JavaScript file. Any clever web hacker could steal this information as long as the user was logged into their Gmail account and visited a malicious site.

Gmail has had problems in the past with this sort of issue. Jeremiah Grossman discovered the issued and reported it to Google.

Both issues revolve around using JavaScript, the scripting language used in web pages, to make requests for data. If the request is made from the HTML within a Gmail message then the cookies used to authenticate a user to Gmail may be used to get information without the users permission.

The person who discovered the issue has reported the issue to the Gmail team. SlipperyBrick will keep you posted on the status of the security issue.

Share:
  • BlinkList
  • del.icio.us
  • Fark
  • NewsVine
  • Reddit
  • Simpy
  • blogmarks
  • Digg
  • Facebook
  • MySpace
  • SphereIt
  • Technorati
  • Google Bookmarks
  • Live
  • StumbleUpon
  • ThisNext


Subscribe to the SlipperyBrick.com content feed through RSS Subscribe to feed via email.



SlipperyBrick Related Articles
gmail mass email deletion
Hacked USB Flash Drive
Gmail pushed to select BlackBerrys
Leave a comment on SlipperyBrick

XHTML: You can use these tags: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>




Other blogs from the Topic Soup Network that you might like:

PopTherapy.com - A therapeutic guide to popular culture

WeathyReader.com - Where reading pays off.

HealthyReader.com web site

Botropolis.com web site