Welcome Guest ( Log In | Register)



 
Reply to this topicStart new topic
> Vulnerability In Gmail, Attention All GMail Users!
delivi
post Mar 2 2006, 01:19 PM
Post #1


Trap Grand Marshal Member
***********

Group: [HOSTED]
Posts: 1,308
Joined: 11-January 06
From: Chennai, India
Member No.: 16,932



A 14 year old boy known to the world as Antony has found a Vulnerability in Gmail.

The Vulnerability is that,
"the javascriptcode present in the message will run if it is withing the preview of the message".

This vulnerability will lead the hackers to access ones Inbox and execute the code that can stel information like Email Ids or important details from your mails.

The tester has found this vulnerability when he sent a mail containing a javascript code, from his Yahoo ID to GMail.

This Vulnerability is filtered out when a mail containing the javascript code from one GMail ID to another GMail ID.

Read more about this vulnerability from the Finder's site by Clicking here.
Go to the top of the page
 
+Quote Post
Dragonfly
post Mar 3 2006, 05:02 PM
Post #2


Privileged Member
*********

Group: Members
Posts: 702
Joined: 17-February 05
Member No.: 3,817



No, wonder the original post in the blogspot has so many comments(49). At one point of time most of the email services have had complaints from users, but the good thing about them is that they have always been able to fix the problems.

Let's hope Google Gmail to come out with the same result. I have actually enjoyed much about this awesome service and approach to email by Google.
Go to the top of the page
 
+Quote Post
iwuvcookies
post Mar 3 2006, 05:15 PM
Post #3


Privileged Member
*********

Group: Members
Posts: 675
Joined: 11-September 04
Member No.: 1,079



This is a little freaky. Something gmail is exposed to. I guess i gotta be more careful. But i usually don't receive mails from people i don' tknow. if it does it'll just be in the spam...
Go to the top of the page
 
+Quote Post
wild20
post Mar 3 2006, 05:28 PM
Post #4


Never alone with Christ
*********

Group: Members
Posts: 647
Joined: 22-July 05
Member No.: 9,713



Wow. Thy better come up with a nother code or make it fool proof. That is dangerous and does place google at some liability. Of course, I don't keep anything important in my account anyway, but still, the thought of it will irk me now. Thanks a lot Delivi. Oh well.

What they need is a way to filter out the dangerous code. Maybe re-write gmail's code that it uses. I don't know, just so they get it fixed.
Go to the top of the page
 
+Quote Post
mama_soap
post Mar 3 2006, 07:23 PM
Post #5


Super Member
*********

Group: Members
Posts: 282
Joined: 30-May 05
From: Bangalore
Member No.: 7,686



Looks fairly non-trivial, but hopefully shouldn't be a problem for the GMail team to get it fixed. Technically, one shouldn't be surprised - after all GMail is in Beta - that is the you've-been-warned phase, so... but I'm a bit worried because GMail has kinda grown on me now and I imagined it was this perfect system, *grin*
Go to the top of the page
 
+Quote Post
inyourarms
post Mar 3 2006, 07:38 PM
Post #6


Advanced Member
*******

Group: Members
Posts: 119
Joined: 6-December 05
Member No.: 15,428



Maybe I should be really worried or something but I'm not. I hardly ever get emails from people I don't know or from site's I haven't signed up to too ^
Go to the top of the page
 
+Quote Post
Florisjuh
post Mar 3 2006, 07:42 PM
Post #7


Proud to be hosted
*********

Group: Members
Posts: 993
Joined: 11-July 04
From: NL
Member No.: 75



Mmh, every system has bugs. A google system having a bug discovered is rather rare tho... At least Google fixed the bug very short after, like we're used from them. smile.gif
Go to the top of the page
 
+Quote Post
wariorpk
post Mar 3 2006, 08:13 PM
Post #8


Privileged Member
*********

Group: Members
Posts: 661
Joined: 18-April 05
Member No.: 5,852



That is pretty serious but you have to admit that Gmail is a very safe e-mail provider for the most part. This is the only security problem I have heard of so far. I am sure that Google will fix it so we can all go back to using Gmail safely.
Go to the top of the page
 
+Quote Post
Cena_54
post Mar 13 2006, 10:42 PM
Post #9


Newbie [Level 3]
***

Group: Members
Posts: 48
Joined: 12-March 06
Member No.: 19,909



Well basically anything and everything contains bugs don't it, but it will most probably fixed in some time so as not to let these bugs be used by hackers new or experienced for them to gain access to peoples gmail inbox.
Go to the top of the page
 
+Quote Post