Jump to content

GMail Vulnerable To Contact List Hijacking

- - - - -

This topic has been archived. This means that you cannot reply to this topic.
28 replies to this topic

#1
TcM

TcM

    Writes binary right handed and hex left handed

  • Members
  • PipPipPipPipPipPipPipPipPip
  • 11,147 posts
"By simply logging in to GMail and visiting a website, a malicious website can steal your contact list, and all their details. The problem occurs because Google stores the contact list data in a Javascript file. So far the attack only works on Firefox, and doesn't appear to work in Opera or Internet explorer 7. IE6 was un-tested as of now."

found it here:-
Slashdot | GMail Vulnerable To Contact List Hijacking

#2
Guest_Jordan_*

Guest_Jordan_*
  • Guests
Good to know, thanks for the post!

#3
TcM

TcM

    Writes binary right handed and hex left handed

  • Members
  • PipPipPipPipPipPipPipPipPip
  • 11,147 posts

Jordan said:

Good to know, thanks for the post!

No problem! Welcome

#4
xtraze

xtraze

    Programming God

  • Members
  • PipPipPipPipPipPipPip
  • 910 posts
I must have been attacked as I always keep logged in my Gmail when I am online. wow, Never knew this. thank you and This only increases spam messages, blow.

am I Hijacked !!! ??? lol

#5
TcM

TcM

    Writes binary right handed and hex left handed

  • Members
  • PipPipPipPipPipPipPipPipPip
  • 11,147 posts

xtraze said:

I must have been attacked as I always keep logged in my Gmail when I am online. wow, Never knew this. thank you and This only increases spam messages, blow.

am I Hijacked !!! ??? lol

Yes I am always logged too! Well I don't have any important contacts in my list so... don't worry too much ;)

#6
xtraze

xtraze

    Programming God

  • Members
  • PipPipPipPipPipPipPip
  • 910 posts
me too. And who can be important, and the worst that can happen is SPAM and a great deal of them and I hate them actually but not much harm.

#7
Guest_mysticalone_*

Guest_mysticalone_*
  • Guests
What if you don't use gmail but do use firefox..would your email still be at risk or is it just with gmail?

#8
TcM

TcM

    Writes binary right handed and hex left handed

  • Members
  • PipPipPipPipPipPipPipPipPip
  • 11,147 posts
No no, just gmail, if only you have read the article you would know this!

#9
xtraze

xtraze

    Programming God

  • Members
  • PipPipPipPipPipPipPip
  • 910 posts
Maybe this is built for Firefox Users and that's why it never harm IE7 Users. Strange.

#10
AfTriX

AfTriX

    Programming God

  • Members
  • PipPipPipPipPipPipPip
  • 586 posts
Are there any solutions to prevent this Hijacking if we are using FireFox? And What is the status for the Netscape Browser?

#11
Guest_littlefranciscan_*

Guest_littlefranciscan_*
  • Guests
If it only works with gmail would you think it would also be lurking in google script elsewhere.

#12
TcM

TcM

    Writes binary right handed and hex left handed

  • Members
  • PipPipPipPipPipPipPipPipPip
  • 11,147 posts

AfTriX said:

Are there any solutions to prevent this Hijacking if we are using FireFox? And What is the status for the Netscape Browser?

Yes there is, after you check you emails from gmail don't exit the browser as you still will remain logged in, instead click Log Out and then exit!

Netscape isn't mentioned here so I don't think its effected!