Wednesday, December 21, 2005

Google plugs 'obscure' phishing holes | CNET News.com

"Google has fixed a security flaw that had opened the door to phishing scams, account hijacks and other attacks, security researchers said Wednesday.The flaw, known as a cross-site scripting vulnerability, existed because Google did not properly secure its mechanism for two error pages, according to Web security company Watchfire, which discovered the problem. Watchfire posted to a security mailing list an advisory on the issue."

Read more at news.com.com/Google+plu...

No comments: