Gmail Hacked!
WARNING: If you use Gmail, it's absolutely vital that you check your account settings now.
Check ALL your filters to ensure your account hasn't been hacked like this designer's. Google has fixed the vulnerability, but if you were exposed before the fix, the filter could still exist in your Gmail account.
+ Reply to Thread
Results 1 to 7 of 8
Thread: Hacked!
-
29th December 2007 08:27 #1
Registered User
- Join Date
- Jun 2006
- Posts
- 1,028
Hacked!
Sed et tortor vitae turpis blandit fermentum. Integer lacus turpis, sem. Aliquam erat volutpat. Suspendisse a nibh ut dolor facilisis molestie. Sed et pede. Sed vitae leo. Phasellus varius ultricies eros. Sed tempor, metus id adipiscing porttitor, diam turpis tempor eros. Nam id libero ut nisl posuere ultricies. Phasellus sed nibh eget lorem consectetuer tempus. Volutpat.
-
29th December 2007 16:04 #2
Registered User
- Join Date
- Feb 2007
- Posts
- 1,863
So in order not to get hacked, just make sure the forwarding option is disabled?
It seems as if one fails to conceive
The meaning my name strives to achieve
To a biological form you cannot relate-
Because a reproductive cell is a gamete not gamate!
It means to unite, -to become consolidated
So without me in a.com, is there hope we'd be amalgamated?

-
29th December 2007 16:15 #3
Moderator
- Join Date
- May 2005
- Location
- In da hood
- Posts
- 7,136
how scary
NEVER grow up
Al Imran 147 - BE OPTIMISTIC!!
your ≠ you’re


-
31st December 2007 18:13 #4
Registered User
- Join Date
- Feb 2007
- Posts
- 1,863
Guarding Against Identity Theft
5-minute guide to protecting identity
Here are 16 steps to protect yourself and six ways to clean up things if you are a victim of identity theft.
The Basics
Your 5-minute guide to protecting identity
Your phone may be under attack
Diagnosis: Identity Theft
Don't take your passwords to the grave
Lock your credit away from ID thievesIt seems as if one fails to conceive
The meaning my name strives to achieve
To a biological form you cannot relate-
Because a reproductive cell is a gamete not gamate!
It means to unite, -to become consolidated
So without me in a.com, is there hope we'd be amalgamated?

-
3rd January 2008 04:03 #5
Moderator
- Join Date
- May 2005
- Location
- In da hood
- Posts
- 7,136
whoa... i'll read that once i finish eating dinner
NEVER grow up
Al Imran 147 - BE OPTIMISTIC!!
your ≠ you’re


-
7th January 2008 11:24 #6
Registered User
- Join Date
- Jun 2006
- Posts
- 1,028
There are two different kinds of attack, both involving the "Forwarding" option:Check ALL your filters to ensure your account hasn't been hacked... Google has fixed the vulnerability, but if you were exposed before the fix, the filter could still exist in your Gmail account.
1. via CSRF (Cross-Site Request Forgery), injecting evil filters on Gmail. CSRF attacks transmit unauthorized commands from a user the website trusts. (If you are curious, you can start reading its wiki page.)
2. via a Gmail vulnerability (already fixed) as Fernando Muñoz, the guy who discovered the vuln, says:
"the second one will make Gmail forward all new received emails to another email account, no user interaction required" ..."To reverse my attack, you have to disable Forwarding,
and for pdp's
you have to remove evil filters from your filters list."
This way, you'll 'close the doors and the windows'. Ecco!
;-)
Here is a fictitious sample:

I could not take the change on these days, attacking my 'beautiful self' just to test that guy's code and if the vuln was really fixed. But I checked ALL my filters for any evil injection.
Hope this post answered your question and raised our awareness of the endless vulns we are exposed.Sed et tortor vitae turpis blandit fermentum. Integer lacus turpis, sem. Aliquam erat volutpat. Suspendisse a nibh ut dolor facilisis molestie. Sed et pede. Sed vitae leo. Phasellus varius ultricies eros. Sed tempor, metus id adipiscing porttitor, diam turpis tempor eros. Nam id libero ut nisl posuere ultricies. Phasellus sed nibh eget lorem consectetuer tempus. Volutpat.
-
7th January 2008 11:34 #7
Registered User
- Join Date
- Jun 2006
- Posts
- 1,028
Sed et tortor vitae turpis blandit fermentum. Integer lacus turpis, sem. Aliquam erat volutpat. Suspendisse a nibh ut dolor facilisis molestie. Sed et pede. Sed vitae leo. Phasellus varius ultricies eros. Sed tempor, metus id adipiscing porttitor, diam turpis tempor eros. Nam id libero ut nisl posuere ultricies. Phasellus sed nibh eget lorem consectetuer tempus. Volutpat.







LinkBack URL
About LinkBacks
Reply With Quote

Bangladesh
Ecuador
Morocco
Nepal
Nicaragua
Puerto Rico
Russia
Scotland
South Africa
Ukraine
Virtual Countries