On MovieTome: Why you didn't see Shatner in TREK
BNET Business Network:
BNET
TechRepublic
ZDNet

October 1st, 2007

GMail backdoor patched, time to check your filters

Posted by Ryan Naraine @ 9:36 am

Categories: Botnets, Browsers, Data theft, Exploit code, Firefox, Google, Hackers, Mozilla, Open source, Passwords, Patch Watch, Pen testing, Privacy, Responsible disclosure, Spam and Phishing, Spyware and Adware, Viruses and Worms, Vulnerability research, Zero-day attacks

Tags: Google Inc., Google Gmail, E-mail Providers, Internet, Ryan Naraine

GMail backdoor patched, time to check your filtersGoogle has confirmed — and I’ve verified — that a fix for GMail has been distributed to block a flaw that allows hackers to hijack e-mail messages.

The cross-site request forgery exploit, discovered and partially disclosed by GNUCitizen’s Petko D. Petkov, gave attackers an easy way to plant GMail filters to forward incoming mail to a third-party (hacker-controlled) e-mail address.

Even after Google’s fix, GMail users are strongly encouraged to check their filter lists because the patch does not remove the rigged filter.

[ SEE: Bullseye on Google: Hackers expose holes in GMail, Blogspot ]

Remember, GMail filters are not the same as labels, which appear on the left pane of the GMail interface.

First, click on Settings in the top-right corner and then the Forwarding and POP tab to ensure that e-mail forwarding is either disabled or not hijacked to send your e-mail elsewhere.

GMail backdoor patched, time to check your filters

Then, in the Filters tab, look carefully for any strange filter that may compromise your mailbox.

Ryan NaraineRyan Naraine is a journalist and security evangelist at Kaspersky Lab. He manages Threatpost.com, a security news portal. Here is Ryan's full profile and disclosure of his industry affiliations.


Email Ryan Naraine

For daily updates on Ryan's activities, follow him on Twitter.

Subscribe to Zero Day via Email alerts or RSS.

  • Talkback
  • Most Recent of 4 Talkback(s)
RE: GMail backdoor patched, time to check your filters
A web design serious Gmail account hacking online payments backdoor, has been found... (Read the rest)
Posted by: royalmad Posted on: 07/11/09 You are currently: a Guest | | Terms of Use
Firefox/Noscript  D. T. Schmitz | 10/01/07
I use gmail through pop only  Resuna | 10/01/07
RE: GMail backdoor patched, time to check your filters  stephen_schneider@... | 10/02/07
RE: GMail backdoor patched, time to check your filters  royalmad | 07/11/09

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement

Recent Entries

advertisement

Archives

Favorite Links

ZDNet Blogs

White Papers, Webcasts, and Downloads

Enterprise Applications

  • Check out some of the easiest and most powerful ways to boost productivity while saving money on your application infrastructure. See ZDNet's comprehensive Enterprise Application resource center, now!
  • New Online Dashboard
  • Read about top issues IT decision-makers face every day, plus get cost effective solutions to real life IT problems. Oracle Topline