May 12 2008

Exploit In Google That Turning It Into ‘Spammers Tool’

Gmails “security flaw is turning it into a spamming machine” , As INSERT reports.

This report by INSERT, the Information Security Research Team, has created a proof of concept that said that by exploiting the flaw that forwords messege by SMTP port spammers can send thousands of messeges. But for this they are supposed to exploit the restriction of 500 bulk emails doe by Gmail. This report also state that there is kind of “trust hierarchy” established between mail providers.

You dont need very special knowldge of hacking for this , INSERT states “anyone can do this”

 This document by INSERT presents a vulnerability report and a proof of concept attack that demonstrate how anyone with no special internet access privileges can access this vulnerability and send send spams through this flaw.

The report notes that with the rising volume of spam, e-mailservice  providers have made black listing and white listing system for mails by which you can send spams to black lists. Through this they can block IP address of mail sender. But Gmail is spread everywhere as a whitelist member so threat level can be high.

Gmail team has no.  official comment on this yet.

In past also through google calender spammers used to spam. Let us see what Google will do this time.

Amol Wagh

 

LEAVE A COMMENT

You must be logged in to post a comment.

Drop Your Card

Archives

Sponsors

Categories

Indian Blogger

Sponsored By

Sponsored by BuddingBloggers