Froogle Bug Gives Way to Gmail and Google Passwords

Jan 17, 2005 - 8:56 am 1 by
Filed Under Google News

From last week, Froogle/Gmail Hack Warning.

An Israeli hacker has uncovered a flaw in Froogle, Google's price-comparison service, which could allow access to users' Gmail accounts. Nir Goldshlager, who discovered the flaw, warned that URL-embedded Javascript could end up causing personal information to be revealed.

If users execute the script by clicking a link, they would be redirected to a malicious website. From there, hackers can read a user's cookie. It may contain personal information, such as purchase histories, or the username and password used to access Google services - such as Gmail.

Goldshlager warned that even if the user chooses not to save the cookie, the hacker can still discover the username and password for other services such as Google Alerts and Groups because of the way that data is stored.

Brett from WebmasterWorld, in the thread discussing this topic points to the Hebrew version of the news. And it was Slashdotted here.

 

Popular Categories

The Pulse of the search community

Search Video Recaps

 
Video Details More Videos Subscribe to Videos

Most Recent Articles

Search Forum Recap

Daily Search Forum Recap: January 24, 2025

Jan 24, 2025 - 10:00 am
Search Video Recaps

Search News Buzz Video Recap: Google Search Volatility, European Manual Actions, Quality Raters Updated, Bing Hides Google & Yahoo AI Chat

Jan 24, 2025 - 8:01 am
Google Search Engine Optimization

Google Search Quality Raters Guidelines Gain 11 New Pages

Jan 24, 2025 - 7:51 am
Google Ads

New Google Ads Performance‬‭ Max‬‭ Features

Jan 24, 2025 - 7:41 am
Google Search Engine Optimization

Google: Spammers Encourage You To Waste Time Disavowing Links

Jan 24, 2025 - 7:31 am
Google Ads

Google Ads To Drop Certification For Some Advertisers & Reorganizes Verification Docs

Jan 24, 2025 - 7:21 am
Previous Story: Seth Godin Awakens From Long Slumber...Discovers Something Called Search Marketing