Email Techs

  • Subscribe to our RSS feed.
  • Twitter
  • StumbleUpon
  • Reddit
  • Facebook
  • Digg

Sunday, 3 January 2010

Nir Goldshlager Founds XSS Vulnerability in Google And Twitter

Posted on 09:15 by Unknown

A security researcher uncovered some holes in Google Calendar and Twitter that may allow an attacker to steal cookies and user session IDs.

 Nir Goldshlager Founds XSS Vulnerability in Google And Twitter

Nir Goldshlageer is a security researcher, he recently found an Xss vulnerability in the Google Calendar and Twitter too. The HTML injection issue affecting Google Calendar as well that he said could be used to redirect a victim to an attack site anytime the user viewed his or her Google Calendar agenda events.

 

“When the victim…(adds) this malicious code, his cookies (and) session ID will be stolen and will be sent to the attacker site," he said. "Then the attacker will be able to get full control of the victim’s Google accounts like: Google Calendar account, Google Groups, iGoogle, etc.”

 

Obviously when the hacker, hacks the Google calendar account he will be able to easily hack the Google account as all the Google services are joint to each other. This is big vulnerability in the Google i am saying it from the starting but lets see what Google do next.

 

"They should fix this immediately, because an attacker can redirect a victim to any site that he wants, and the XSS issue an attacker can steal the victim's cookies and get full control of his accounts," Nir Goldshlageer said.

 

Whatever is the story the Google and twitter are a big targets that are continued to be a target for hackers like us.

 

What do You think ?

Email ThisBlogThis!Share to XShare to Facebook
Posted in Hacked, News | No comments
Newer Post Older Post Home

0 comments:

Post a Comment

Subscribe to: Post Comments (Atom)

Popular Posts

  • New iPhone Worm That Attacks Jail Broken iPhones Also
    Well its again the iPhone which have come to the headlines again , But this time the apple is really pissed of with the kind of work the Ha...
  • Ophcrack Guide : Hack Any Password In Windows
    There might be many times you have heard of Ophcrack, now what is actually it well is a popular to crack passwords in windows. Many...
  • ‘New Moon” Fans Beware Of Hackers
    We are Getting Constant Rumors from many places that Hackers are going to target the the fans of the upcoming movie “New Moon” ...
  • Modern Warfare 2 Hacked By Hackers Now Up For Sale
    Looks like our hackers mate out there have now come with some cool shit, Its the New COD : MODERN WARFARE 2 which is the continuation o...
  • Official Indian Army Website –“Safe From Hackers”
    The new website for the Indian army (IA) have been launched and the authorities are saying it is really safe from any Hackers Activity. ...
  • Dear Mozilla, Please “DONT” fix this. [Pic]
    Today only i found this pic on Digg and i thought there should be a “DONT” in it. isn't it ? ..
  • Norton And Kaspersky On Commercial Fight For Security Suit’s 2010
    When there is Cyber crime there are antivirus and after that there is a fight in between them. You all be knowing about the two most pop...
  • Ubisoft Hacked : Fake or Real ?
    Some days ago we got news about Ubisoft being hacked by some hackers and was being believed till yet but after then some news breached out...
  • Peer Block : Safeguard Yourself From Harmful Server’s
    Have you ever heard of a software called Peer Guardian . So do you know what it is actually well here is the guide for you guys. Peer G...
  • 30 Million Facebook, MySpace, and Orkut ID’s Hacked
    Hackers Have crossed the security boundaries of a widget and multi-social networking based company RockYou.com which host many users from s...

Categories

  • Broadband
  • cyberwar
  • Ebooks
  • email
  • Gamers
  • Guides
  • Hacked
  • Hacker The Dude News
  • Hacking
  • Hacking Software
  • keylogger
  • Misc
  • Mobie's
  • News
  • Orkut
  • PHP
  • Pics
  • Pro Hacks
  • Small Hacks
  • Stylize
  • Tools
  • Torrent
  • Tricks
  • Twitter
  • Video's
  • Virus's
  • Weekly Top 10 Internet Tools
  • Windows
  • XSS

Blog Archive

  • ▼  2010 (32)
    • ►  March (7)
    • ►  February (3)
    • ▼  January (22)
      • How To Root Your Nexus One Android Phone [Tutorial]
      • RSA Crypto 768-Bit Keys Cracked
      • Can You Believe Playstation 3 Just Got Rooted - Ge...
      • Techcrunch Hacked
      • BT4 Final, Nmap and Immunity Debugger Updated : Th...
      • Danger : Warning From Electricity [Pic]
      • Deep Look At Netdevilz XSS : Whois.com Hacked
      • 2 New Interesting Xss This Week
      • Gmail Goes https For Secure : Wi-Fi Protection
      • Are You Ready For Nullcon - Goa 2010
      • Angelina Jolie and Barack Obama #1 Choice of Spamm...
      • Interesting Approach To Computer Security : Fail [...
      • HITB Ezine Issue 1 Released : Keeping Knowledge Free
      • US Army Website Defaced : TinKode Strike Again
      • MITM iPhone's PhotoSwap : How To Steal Hot Pics Of...
      • iiScan : Security On The Cloud
      • @purehate_ Launches Online WPA Cracker : 10$ For 5...
      • Windows 7 GodMode Hack [Turtorial]
      • Another Cheap GSM Encryption Hack [Pic]
      • How Youtube Got Hacked : How The F*ck She Did That ?
      • Nir Goldshlager Founds XSS Vulnerability in Google...
      • Intel Website Hacked : Another SQL Injection From Unu
  • ►  2009 (123)
    • ►  December (34)
    • ►  November (30)
    • ►  October (24)
    • ►  September (9)
    • ►  August (6)
    • ►  July (1)
    • ►  June (3)
    • ►  May (16)
Powered by Blogger.

About Me

Unknown
View my complete profile