POST YOUR TOPICS HERE

Hi friends, This blog welcomes you all to post you own new tricks and tips here. For this you have to just send a mail to sendmytricks@ymail.com

Your post would be posted along with your name and location. For this you have to send a mail to the above mentioned id.

Format for sending mail.

Subject : MY TRICKS

1. Your name [will be displayed if display name not given]
2. Display name [This name would be displayed along with you post]
3. You location [For ex., Chennai, India.]
4. Post topic.
5. Details.

Pictures are also allowed. For that you need to send the pictures as links.

IMPORTANT NOTE : Please do not spam in this mail id. You can send you ideas/problems in this mail id itself.

Friday, May 30, 2008

Exploit In Google That Turning It Into ‘Spammers Tool’

Gmails “security flaw is turning it into a spamming machine” , As Insert (Information Security Research Team) reports.


This report by INSERT, the Information Security Research Team, has created a proof of concept that said that by exploiting the flaw that forwords messege by SMTP port spammers can send thousands of messeges. But for this they are supposed to exploit the restriction of 500 bulk emails doe by Gmail. This report also state that there is kind of “trust hierarchy” established between mail providers.
You dont need very special knowldge of hacking for this , INSERT states “anyone can do this”
This document by INSERT presents a vulnerability report and a proof of concept attack that demonstrate how anyone with no special internet access privileges can access this vulnerability and send send spams through this flaw.
The report notes that with the rising volume of spam, e-mailservice providers have made black listing and white listing system for mails by which you can send spams to black lists. Through this they can block IP address of mail sender. But Gmail is spread everywhere as a whitelist member so threat level can be high.
Gmail team has no. official comment on this yet.
In past also through google calender spammers used to spam. Let us see what Google will do this time.


No comments: