"By simply logging in to GMail and visiting a website, a malicious website can steal your contact list, and all their details. The problem occurs because Google stores the contact list data in a Javascript file. So far the attack only works on Firefox, and doesn't appear to work in Opera or Internet explorer 7. IE6 was un-tested as of now."
found it here:-
Slashdot | GMail Vulnerable To Contact List Hijacking
GMail Vulnerable To Contact List Hijacking
Started by TcM, Jan 01 2007 11:08 AM
28 replies to this topic
#1
Posted 01 January 2007 - 11:08 AM
|
|
|
#2
Guest_Jordan_*
Posted 01 January 2007 - 12:51 PM
Guest_Jordan_*
Good to know, thanks for the post!
#3
Posted 01 January 2007 - 02:52 PM
Jordan said:
Good to know, thanks for the post!
No problem! Welcome
#4
Posted 02 January 2007 - 01:12 AM
I must have been attacked as I always keep logged in my Gmail when I am online. wow, Never knew this. thank you and This only increases spam messages, blow.
am I Hijacked !!! ??? lol
am I Hijacked !!! ??? lol
#5
Posted 02 January 2007 - 01:39 AM
xtraze said:
I must have been attacked as I always keep logged in my Gmail when I am online. wow, Never knew this. thank you and This only increases spam messages, blow.
am I Hijacked !!! ??? lol
am I Hijacked !!! ??? lol
Yes I am always logged too! Well I don't have any important contacts in my list so... don't worry too much ;)
#6
Posted 02 January 2007 - 01:48 AM
me too. And who can be important, and the worst that can happen is SPAM and a great deal of them and I hate them actually but not much harm.
#7
Guest_mysticalone_*
Posted 02 January 2007 - 05:59 PM
Guest_mysticalone_*
What if you don't use gmail but do use firefox..would your email still be at risk or is it just with gmail?
#8
Posted 03 January 2007 - 05:10 AM
No no, just gmail, if only you have read the article you would know this!
#9
Posted 04 January 2007 - 01:11 AM
Maybe this is built for Firefox Users and that's why it never harm IE7 Users. Strange.
#10
Posted 04 January 2007 - 03:16 AM
Are there any solutions to prevent this Hijacking if we are using FireFox? And What is the status for the Netscape Browser?
#11
Guest_littlefranciscan_*
Posted 04 January 2007 - 04:14 AM
Guest_littlefranciscan_*
If it only works with gmail would you think it would also be lurking in google script elsewhere.
#12
Posted 04 January 2007 - 08:13 AM
AfTriX said:
Are there any solutions to prevent this Hijacking if we are using FireFox? And What is the status for the Netscape Browser?
Yes there is, after you check you emails from gmail don't exit the browser as you still will remain logged in, instead click Log Out and then exit!
Netscape isn't mentioned here so I don't think its effected!


Sign In
Create Account


Back to top









