iEntry 10th Anniversary RSS Newsletter Advertising
Visit Twellow.com

Researchers See Gmail "Spam And Phishing Threat"


Clear, though maybe not present, danger

So long as it winds up in the trashcan, spam isn't too much of a problem for end users.  Yet security researchers have discovered a way in which spammers could use Gmail to send a massive number of messages straight into inboxes.

The Information Security Research Team (INSERT) came across a problem and wrote, "We were able to confirm that this vulnerability is indeed exploitable by assembling a proof of concept (PoC) attack that allowed us to use one single Gmail account to send bulk messages to more than 4,000 email targets (which surpasses Gmail's 500 messages limit for bulk messages)."

INSERT's Report
 INSERT's Report

The team later continued, "Additionally, we were able to use this vulnerability to forward messages that originally were classified as spam directly to a victim's inbox effectively bypassing filters."

Details remain fuzzy - in huge, all-capital letters, the phrase "omitted as a courtesy to Google" appears throughout INSERT's report.  Still, spammers delight in anything-you-can-do-I-can-do-better displays, so even if the public doesn't pick up on what took place, some element may.

This development comes as the latest part of a discouraging pattern: in the last three months, Gmail's traditional and audio captchas have both been broken.  But on the bright side, Google's Matt Cutts recently shared some of what his company knows about different types of spam.

News Tags: Google, Phishing, gmail, Spam
About the author:
Doug is a staff writer for WebProNews. Visit WebProNews for the latest eBusiness news.

Comments

Post new comment

The content of this field is kept private and will not be shown publicly.
  • Web page addresses and e-mail addresses turn into links automatically.
  • Allowed HTML tags: <a> <em> <strong> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd>
  • Lines and paragraphs break automatically.
CAPTCHA
This question is for testing whether you are a human visitor and to prevent automated spam submissions.
1 + 0 =
Solve this simple math problem and enter the result. E.g. for 1+3, enter 4.
Featured Headline
FriendFeed Offers Real-Time Search
Results Actually Roll In
2 comments | 6 hours ago
 
Subscribe to WebProNews


Send me relevant info