Firefox users: Beware of Gmail XSS Attack

simple

simple

@simple-3OHIl5 Oct 8, 2024
Saturday November 17, 2007

#-Link-Snipped-#

An exploit for Firefox, reported 10 days ago and as of yet still not patched, is #-Link-Snipped-# access to Google accounts, including gmail.
Firefox users are advised to use NoScript or turn off javacript on unknown webpages and stay logged out of their Google Accounts until a fix is issued.
A 302 redirect error in Google, discovered by bedford.org's Morgan Lowtech aka tx, creates a domain-wide cross-site scripting attack allowing hackers to gain access and modify Google user accounts including e-mails, contact lists and online presence.

#-Link-Snipped-#

Replies

Welcome, guest

Join CrazyEngineers to reply, ask questions, and participate in conversations.

CrazyEngineers powered by Jatra Community Platform

  • mahul

    mahul

    @mahul-ZxpiLA Nov 21, 2007

    cool update simple... though i do not use firefox,lots of my pals do. guess i will have to inform them
  • Kaustubh Katdare

    Kaustubh Katdare

    @thebigk Nov 21, 2007

    Thanks for the update, Simple!

    -The Big K-