WHIR | BLOGS | WEB HOST NEWS | FIND WEB HOSTS | RESELLER HOSTING | MAGAZINE | WHIR TV | NEWSLETTER | rss feeds
web hosting news - daily web host interviews, insight Jobs | Events | Sitemap | Search
Green Data Center Info


WEB HOSTING NEWS | BLOGS | INTERVIEWS | EUROPE | EVENTS | WEB HOSTING JOBS

<< WHIR Blogs Week in Review     Web Host Rackspace Buys Webmail.us >>


Google Fixes Gmail Vulnerability

October 1, 2007 -- (WEB HOST INDUSTRY REVIEW) -- Web analytics firm Netcraft (netcraft.com) reported this weekend that search engine giant Google (google.com) has fixed a vulnerability in its Gmail Web-based email service. Netcraft says the vulnerability would have allowed Internet attackers to steal mail messages from users without being noticed.

   
DataPipe’s high-value managed global IT services help thousands of businesses decrease CAPEX, OPEX, & risk while increasing overall service levels. Partner with DataPipe – Improve your ROI - Extend your IT resources

The attack technique known as Cross-site Request Forgery works by forcing a logged-in user to add a mail filter to his Gmail account, allowing his mail to be forwarded to an external mail address controlled by the attacker. The analytics firm says that because Gmail doesn't adequately verify the origin of such requests, it's possible for attackers to create their own Web pages using JavaScript to automatically make these kinds of requests on behalf of their victims. Since the results of the request are hidden, it's unlikely that a victim will have noticed that his Gmail account has been compromised, particularly if he has left Gmail open while browsing the Internet.

Netcraft says compromised webmail accounts are regarded as a valuable commodity by hackers as they often contain information that could help them gain unauthorized access to other systems, such as Internet banking, and to harvest credit card details from online stores used by the victim.

Cross-site Request Forgery vulnerabilities are often difficult to identify using automated tools and typically require testing by security aware developers, says the analytics firm.

Netcraft also recently reported that INetU, New York Internet and Acens are the most reliable hosting company sites for August 2007, followed closely by Easynet, iPowerWeb and Go Daddy.

Print this Page       Email this Page        Add to: | del.icio.us | digg


COMMENTS

Be the first one to comment on this article. Click the link below to post your comment.

[POST COMMENT]



Q&A: Jim Lewandowski, Rackspace

Q&A: Clint Poole, Brinkster

New Features in Parallels Plesk 9

Q&A: James Bond, Apptix

Noise Filter: McColo Taken Down

Wowza Offers Friction Free Flash

Sun Battles for Greenest Data Center

More feature interviews and reports
 

Go Daddy Ads in the Grey Cup

Video Interview with Vinay Nagpal, Tata Communications

Copywriting for Direct Mail - Part 2: Big Guns

What Exactly is Semi-Dedicated Hosting?

Own your own jet

MLB.com switches to Flash; Hosting and Video Streaming Questions

More posts from our Bloggers


NameCheap Launches Twitter Promo

CBS Web Site Faces Malware Hack

VineyardHosting Limits Eternal Hosting

Email Use Increases As Economy Slows

HostNine Re-Launches New Website

SoftLayer Sponsors MSDN Conference

Hosting Sales and Promos Roundup

SoftLayer Shows Continued Growth

Microsoft Named on Spam Host List

3FN Ups Hardware Swap Capability

ZNet Brings Hyper-V VPS to India

Black Friday Causes Shutdowns


 

Marketing/Sales Trainer

Sales Operator

Management Trainer

Senior Account Manager, Dedicated Hosting

Sales Executive

Senior Accounting Analyst

Technical Solutions Engineer

Product Manager

Account Manager

Ajax Experienced Developer

 

SPONSORED LINKS
> Apollo Hosting: Award Winning Website Hosting from $6.96 – Click Here!

> iWeb: Quality servers. 3000GB of traffic for only $69

> TopLayer: SC Mag Recommended. Protect against DDoS Attacks & more.

> Parallels: Automation and Virtualization. Buy ONLINE or Learn MORE!

> Rackspace: What Do You Get With Your Hosting Provider?

> Verio: Get Email Anywhere w/ Hosted Exchange $11.95/mo, 2 Mo Free

> IronScale: Why Rack? Automate with IronScale Managed Hosting

> Learn more about the greening of the data center here.

> Is your company hiring? Post your job listing here!

> Get your company listed in our annual Buyer's Guide magazine issue - Deadline: Dec 31

WHIR NEWSLETTER SIGN-UP | MANAGE SUBSCRIPTIONS | WHIR RSS FEEDS
Name:
Email:
Password:
theWHIR Blog Email Update
Magazine
Daily News
Find Web Hosts
Occupation:
Company Type:

Find Web Hosts | Reseller Hosting | Personal Web Hosting | Small Business Web Hosting | Dedicated Servers | Managed Hosting | Adult Web Hosting


About WHIR | Online Advertising | Print Advertising | Print Subscription | Email Newsletters | RSS Feeds
 
Submit News | Privacy Policy | Buy Reprints

Web Host Industry Review, Inc. is not responsible for the content of comments submitted by our users.

  © Copyright Web Host Industry Review, Inc.