Posted by Steven Musil
Reports that a purported Gmail vulnerability was being used by unauthorized third parties to hijack domains turned out to be nothing more than a phishing scam, Google announced Tuesday.
The alleged vulnerability reportedly allowed an attacker to set up filters on users' e-mail accounts without their knowledge, according to a proof of concept posted Sunday at the blog Geek Condition. In the post, Geek Condition's "Brandon" wrote that the vulnerability had caused some people to lose their domain names registered through GoDaddy.com.
However, after consulting with those who claimed to be affected by the so-called vulnerability, Google determined that they were victims of a phishing scam, Google information security engineer Chris Evans explained in a blog:
Attackers sent customized e-mails encouraging Web domain owners to visit fraudulent Web sites such as "google-hosts.com" that they set up purely to harvest usernames and passwords. These fake sites had no affiliation with Google, and the ones we've seen are now offline. Once attackers gained the user credentials, they were free to modify the affected accounts as they desired.
A Google representative contacted me early Monday to let me know the company was trying contact "Brandon" to get more information on his claim, but there was no word whether that blogger helped Google arrive at its conclusion. As of this writing, the blog has not been updated to mention Google's finding.
While this security breach was apparently unrelated to Gmail's operation, Google reminded users to enter Gmail sign-in credentials only at Web addresses starting with "https://www.google.com/accounts," and not to ignore warnings their browsers may raise regarding certificates.
Categories
- academic | technological (5)
- commerce | finance (19)
- education | language (11)
- electronic | digital (4)
- health | diet (28)
- industry | giant (11)
- network | website (12)
- product | application (14)
Sponsored Links
Blog Archive
-
▼
2008
(90)
-
▼
December
(90)
- Using POP Displays to Enhance Your Sales
- Choosing the Right Direct Mail Product For Your Ho...
- Networking Gold Diggers
- Secrets to Small Business Success - Network Your B...
- How to Get Lean Muscle - 3 Ways to Force a Skinny ...
- Why Skinny Guys Always Struggle to Build Muscle
- Tips on Creating a Controversial Press Release
- How to Personalise an Engraved Executive Gift
- Low Budget PP - Why Pay Them When You Can Do it Yo...
- Warning - The Following 9 Points May Turn You Into...
- Basics and Benefits of Yoga
- what is yoga?
- Hatha Yoga For Good Health
- How to Choose the Perfect Yoga Class For Your Type
- Top Yoga Cures For Winter Blues
- Hearing Loss - Causes and Symptoms You Should Know
- Ear Pain and the Best Means For Treatment
- Stop Mumbling!
- Popular Special Effects Lenses
- What is the Difference Between Monthly Contacts an...
- Apple files Swipe Gestures patent for iPhone keyboard
- NASA Awards Cargo Contracts
- Post-holiday sales bring in shoppers, but they may...
- What's to Love About a Lima Bean?
- The Right Supplements for Alzheimer's
- Here's Ya'll Lima Bean Recipes
- Papaya As a Healing Food
- Papaya Relish Recipe
- Treatment for Stage 1 Invasive Breast Cancer: Frui...
- Healthy, Tasty, American Treat
- Make Christmas different and healthy this year
- More tips for lite Christmas cakes
- Tips for making healthy Christmas cakes
- Google Expands Parked Domain Ads Program
- Twitter Humiliates MySpace
- A Boon for Xoopit and Other Productivity Add-Ons
- The Extraordinary Happenings At BitTorrent
- OpenX Shows Growth, Ramps Up Revenue Streams
- Oxite - Microsofts Open Source Blogging Platform
- Watch Out WiFi, Here Comes MiFi
- Who will Preserve Your Digital Data?
- Extracting Images From the Brain
- Google Chrome Out Of Beta
- 'Report a Concern' at Google Maps
- Google Releases Browser Security Handbook
- Send SMS in Gmail Chat
- Change.gov Using Google Moderator
- Polygons Evolving Into Your Custom Picture
- Yahoo Laying Off Employees and Providing Layoff Ta...
- Google Street View US Expands
- Google Book Search Adds Magazines
- Read Wikipedia on Mobile Phones through Email
- Visual Guide to Time Around the World
- Access del.icio.us Bookmarks on your Mobile Phone
- Most Popular Google Subdomains
- How I Make Money Blogging
- Choosing a Blog Platform
- What is a Blog?
- How Bloggers Make Money from Blogs
- How to Write Your “About Me” Page
- N97-Nokia Strikes Back iPhone-Apple
- Parsnip Gnocchi-Recipe
- Rucola Cashew Pesto-Recipe
- Why Does Google Allow Ads for AdSense Ready Websites?
- AdSense Click Fraud in India - How The Whole Syste...
- Technorati Ad Network for Blogs is Live
- BlogAds Invitations Available for Bloggers & Site ...
- Learn How To Pronounce Foreign Names Correctly
- Online networks a magnet for job-seekers
- Gmail 'vulnerability' turns out to be phishing scam
- 'Minority Report' Computer Interface Becomes Reality
- Spanish Dessert Recipes - Flan
- Best Spanish Rice Recipe
- Black rice with squid
- Gmail exploit may allow attackers to forward e-mail
- How to Access Blocked Websites, Unblock Restricted...
- Top 5 Worst Things About The iPhone
- NetVet and the Electronic Zoo History
- 11 Tips to Improve Your Landing Page
- Some Free eBook Websites
- Sacred Texts & Religion
- Individual Topics/Miscellaneous
- World - Other Languages,Regional and National
- Free audio books
- Other Free Books in English
- Other Free Australian Books
- Best free Digital Libraries - World
- Best free Digital Libraries - NZ
- Best free Digital Libraries - Australia
- Government working on Citigroup rescue
-
▼
December
(90)
Tuesday, December 2, 2008
Gmail 'vulnerability' turns out to be phishing scam
Posted by egfner at 9:48 PM
Labels: industry | giant
Subscribe to:
Post Comments (Atom)
0 comments:
Post a Comment