Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Post New Thread Reply

Register GFY Rules Calendar
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed.

 
Thread Tools
Old 10-30-2004, 12:57 AM   #1
OzMan
Confirmed User
 
OzMan's Avatar
 
Join Date: Sep 2003
Location: Los Begas
Posts: 9,162
Gmail Security Exploit

Be careful what you are clicking on if you have a Gmail account.


"So you?ve got a Gmail mail account? Or maybe you?ve just received an invitation? Well, we have some bad news for you: Your mail box is exposed. A major security hole in Google's mail service, allows full access to user accounts, without the need of a password"... FULL STORY


Please limit your replies to either:

A) Ha! I told all you dumb fuckers before that Gmail was no good but nobody wanted to hear it.

or

B) This fucking sucks as I like Gmail but I am sure it will be fixed real soon.

OzMan is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-30-2004, 12:58 AM   #2
Chris
Too lazy to set a custom title
 
Chris's Avatar
 
Industry Role:
Join Date: May 2003
Location: icq: 71462500 Skype: Jupzchris
Posts: 27,880
all your gmail are belong to us.


Hmm

Proxys

Pay per email program

haxed gmails



__________________
[email protected]
Chris is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-30-2004, 01:04 AM   #3
Dagwolf
President of Canada
 
Dagwolf's Avatar
 
Join Date: Sep 2003
Location: Leaving Hell, Entering Limbo
Posts: 23,141
Quote:
Originally posted by OzMan

A) Ha! I told all you dumb fuckers before that Gmail was no good but nobody wanted to hear it.

or

B) This fucking sucks as I like Gmail but I am sure it will be fixed real soon.

Ha! My Gmail account is EMPTY! Go get it, hackers!
__________________
Sleep well, and dream of large women.

Dagwolf is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-30-2004, 01:15 AM   #4
V_RocKs
Damn Right I Kiss Ass!
 
Industry Role:
Join Date: Dec 2003
Location: Cowtown, USA
Posts: 32,409
Sweet, but you need to give up your cookie first, click here!
V_RocKs is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-30-2004, 01:16 AM   #5
Adultnet
Confirmed User
 
Join Date: Sep 2003
Posts: 8,713
Be care full on what links you click
__________________


TrafficCashGold Paying Webmasters Since 1996!

Awesome Conversions! Fast Weekly Payments! Over 125 Tours!
Adultnet is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-30-2004, 01:20 AM   #6
Myst
Confirmed User
 
Join Date: Feb 2004
Location: Alberta, Canada
Posts: 4,707
youre all fucking stupid

just as stupid as the retards who use firefox instead of programs like myie2 which are clearly better and faster but arent "secure". you paranoid stupid idiots

can you even read the article? you need the persons cookie to do it. if you can get the persons cookie, youre gonna have to either hack into the computer, or just go grab it if its like your roomates computer. but why not just install a keylogger or something. this exploit is stupid, and it means nothing. carry on with your ignorant lives
__________________
ICQ: 298-523-037
Myst is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-30-2004, 01:31 AM   #7
OzMan
Confirmed User
 
OzMan's Avatar
 
Join Date: Sep 2003
Location: Los Begas
Posts: 9,162
Quote:
Originally posted by Myst
youre all fucking stupid

just as stupid as the retards who use firefox instead of programs like myie2 which are clearly better and faster but arent "secure". you paranoid stupid idiots

can you even read the article? you need the persons cookie to do it. if you can get the persons cookie, youre gonna have to either hack into the computer, or just go grab it if its like your roomates computer. but why not just install a keylogger or something. this exploit is stupid, and it means nothing. carry on with your ignorant lives
Apparently you DIDN'T read the article

...It allows the hacker to "snatch" the victims cookie file (a file planted in the victim's computer used to identify him) using a seemingly innocent link (which directs to Gmail's site itself). Once stolen, this cookie file allows the hacker to identify himself as the victim, without the need of a password...."

Please change your sig to "Apparently not so experienced Windows Programmer on crack"
OzMan is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-30-2004, 05:10 AM   #8
Calvinguy
Confirmed User
 
Join Date: Oct 2002
Location: European Union
Posts: 1,752
It's a general exploit then for all systems that don't encrypt the passwords stored in a cookie
Calvinguy is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-30-2004, 05:13 AM   #9
xclusive
Too lazy to set a custom title
 
Join Date: Apr 2004
Location: Buffalo, NY
Posts: 35,218
It's amazing how the simple exploits are always looked over by software companies...
__________________

I support MediumPimpin.com / Shemp's Outlawtgp.com /


xclusive is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-30-2004, 05:14 AM   #10
Fake Nick
So Fucking Banned
 
Join Date: Jul 2004
Location: go troll goo!
Posts: 7,708
hmm, that is old new my friend , the latest news is that google made a statement there was a slight problem but has been fixed already......
Fake Nick is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-30-2004, 06:44 AM   #11
Basic_man
Programming King Pin
 
Basic_man's Avatar
 
Industry Role:
Join Date: Oct 2003
Location: Montreal
Posts: 27,360
A) Ha! I told all you dumb fuckers before that Gmail was no good but nobody wanted to hear it.
__________________
UUGallery Builder - automated photo/video gallery plugin for Wordpress!
Stop looking! Checkout Naked Hosting, online since 1999 !
Basic_man is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-30-2004, 07:16 AM   #12
loverboy
When it rains, it pours
 
Industry Role:
Join Date: May 2003
Posts: 20,609
Quote:
Originally posted by Basic_man
A) Ha! I told all you dumb fuckers before that Gmail was no good but nobody wanted to hear it.
good for me as well, haven't installed my 2 gmail invites
loverboy is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-30-2004, 07:19 AM   #13
swedguy
Confirmed User
 
Industry Role:
Join Date: Jan 2002
Posts: 7,981
"reveals Nir Goldshlagger, an Israeli hacker"

Are those Israelis ever up to anything good?
swedguy is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-30-2004, 08:20 AM   #14
More Booze
Confirmed User
 
Join Date: Mar 2004
Posts: 5,116
This fucking sucks as I like Gmail but I am sure it will be fixed real soon.
More Booze is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-30-2004, 08:22 AM   #15
Fake Nick
So Fucking Banned
 
Join Date: Jul 2004
Location: go troll goo!
Posts: 7,708
Quote:
Originally posted by More Booze
This fucking sucks as I like Gmail but I am sure it will be fixed real soon.

read the thread then reply ;) not just the topic title and the first post , this is old news and the exploit was already fixed before this topic was posted
Fake Nick is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-30-2004, 08:24 AM   #16
MrJackMeHoff
Confirmed User
 
Join Date: Mar 2004
Location: LOLLIPOP ISLAND =-=-=-=-=-=-=-=-=-=-= =-=-=-=-=-=-=-=-=-=-= =-=-=-=-=-=-=-=-=-=-= =-=-=-=-=-=-=-=-=-=-= =-=-=-=-=-=-=-=-=-=-= =-=-=-=-=-=-=-=-=-=-= =-=-=-=-=-=-=-=-=-=-= =-=-=-=-=-=-=-=-=-=-= =-=-=-=-=-=-=-=-=-=-= =-=-=-=-=-=-=-=-=-=-=
Posts: 4,569
Quote:
Originally posted by More Booze
This fucking sucks as I like Gmail but I am sure it will be fixed real soon.
This is about as worrysome as a cloudy day..
__________________
MrJackMeHoff is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-30-2004, 09:35 AM   #17
ytcracker
stc is the greatest
 
ytcracker's Avatar
 
Join Date: Dec 2002
Location: rip sean murray
Posts: 12,403
Quote:
Originally posted by Fake Nick
read the thread then reply ;) not just the topic title and the first post , this is old news and the exploit was already fixed before this topic was posted
yep old hat
__________________
www.ytcracker.com | www.digitalgangster.com
i love you
ytcracker is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-30-2004, 10:06 AM   #18
OzMan
Confirmed User
 
OzMan's Avatar
 
Join Date: Sep 2003
Location: Los Begas
Posts: 9,162
Quote:
Originally posted by Fake Nick
hmm, that is old new my friend , the latest news is that google made a statement there was a slight problem but has been fixed already......
It's only old news if you have heard it before and most people don't read obscure Israeli sites.


Hmm Israeli... Fake Nick..... hmmmm I wonder

Anyhow the original Exploit was posted like 3 days ago. Several news services picked it up in the last day.

But you are correct that Google has patched it already

Found this from yesterday, sorry it is almost 24 hours old

"SAN FRANCISCO - Google (Profile, Products, Articles) Inc. has fixed a security flaw in its Gmail Web-based e-mail service that allowed attackers to hijack users' e-mail accounts...."

FULL STORY
OzMan is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-30-2004, 10:24 AM   #19
foolio
ICQ: 178725656
 
Join Date: Nov 2002
Location: Sunny San Diego
Posts: 12,366
WOW! You would think they were still in BETA or something!
__________________
foolio is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-30-2004, 10:41 AM   #20
Antonio
Too lazy to set a custom title
 
Antonio's Avatar
 
Join Date: Oct 2001
Location: Spartaaaaaaaaa
Posts: 14,136
Quote:
Originally posted by Myst
youre all fucking stupid

just as stupid as the retards who use firefox instead of programs like myie2 which a.......etc
Just looked at the stats in your sig.
33 signups - $ 2126.00
Does AAC pay 64.42 per signup?
Antonio is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-30-2004, 10:52 AM   #21
SmokeyTheBear
►SouthOfHeaven
 
SmokeyTheBear's Avatar
 
Join Date: Jun 2004
Location: PlanetEarth MyBoardRank: GerbilMaster My-Penis-Size: extralarge MyWeapon: Computer
Posts: 28,609
Quote:
Originally posted by Myst
youre all fucking stupid

just as stupid as the retards who use firefox instead of programs like myie2 which are clearly better and faster but arent "secure". you paranoid stupid idiots

can you even read the article? you need the persons cookie to do it. if you can get the persons cookie, youre gonna have to either hack into the computer, or just go grab it if its like your roomates computer. but why not just install a keylogger or something. this exploit is stupid, and it means nothing. carry on with your ignorant lives
And you call yourself a programmer

Nope sorry. Your just plain wrong here. Getting a users gmail cookie is very very easy, Like i could have yours now if i wanted ;) It does require some user interaction. ( like opening this thread )
__________________
hatisblack at yahoo.com
SmokeyTheBear is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-30-2004, 10:56 AM   #22
SmokeyTheBear
►SouthOfHeaven
 
SmokeyTheBear's Avatar
 
Join Date: Jun 2004
Location: PlanetEarth MyBoardRank: GerbilMaster My-Penis-Size: extralarge MyWeapon: Computer
Posts: 28,609
Quote:
Originally posted by Calvinguy
It's a general exploit then for all systems that don't encrypt the passwords stored in a cookie
no, they do use encryption, but its usually some rotational format that is easily spotted.

Either way you dont need the password anyways , just the cookie
__________________
hatisblack at yahoo.com
SmokeyTheBear is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Post New Thread Reply
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright © 2000- Jelsoft Enterprises Limited.