<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Google, WTF?</title>
	<atom:link href="http://blogs.gnome.org/sudaltsov/2007/12/23/google-wtf/feed/" rel="self" type="application/rss+xml" />
	<link>http://blogs.gnome.org/sudaltsov/2007/12/23/google-wtf/</link>
	<description>Just another GNOME Blogs weblog</description>
	<lastBuildDate>Thu, 08 Oct 2009 20:44:10 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: adrin</title>
		<link>http://blogs.gnome.org/sudaltsov/2007/12/23/google-wtf/comment-page-1/#comment-246</link>
		<dc:creator>adrin</dc:creator>
		<pubDate>Thu, 10 Jan 2008 11:36:55 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.gnome.org/sudaltsov/2007/12/23/google-wtf/#comment-246</guid>
		<description>Bytheway, yahoo doesn&#039;t support secure connection as easy an free as google do.</description>
		<content:encoded><![CDATA[<p>Bytheway, yahoo doesn&#8217;t support secure connection as easy an free as google do.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sergey Udaltsov</title>
		<link>http://blogs.gnome.org/sudaltsov/2007/12/23/google-wtf/comment-page-1/#comment-244</link>
		<dc:creator>Sergey Udaltsov</dc:creator>
		<pubDate>Sat, 29 Dec 2007 18:57:11 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.gnome.org/sudaltsov/2007/12/23/google-wtf/#comment-244</guid>
		<description>Justin: shame on Google indeed. My spam had first lines:

 We are a wholesaler which deal with  electronic products, such as: Mobile,TV,PC,DV,DC,games,MP3 Even motorcycles and musical instruments. Delivering  our items by EMS to our customers around the world, The link pointed to the site www dot ems dot com dot cn</description>
		<content:encoded><![CDATA[<p>Justin: shame on Google indeed. My spam had first lines:</p>
<p> We are a wholesaler which deal with  electronic products, such as: Mobile,TV,PC,DV,DC,games,MP3 Even motorcycles and musical instruments. Delivering  our items by EMS to our customers around the world, The link pointed to the site www dot ems dot com dot cn</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Justin Mason</title>
		<link>http://blogs.gnome.org/sudaltsov/2007/12/23/google-wtf/comment-page-1/#comment-243</link>
		<dc:creator>Justin Mason</dc:creator>
		<pubDate>Fri, 28 Dec 2007 16:16:35 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.gnome.org/sudaltsov/2007/12/23/google-wtf/#comment-243</guid>
		<description>Google had a cross-site referrer hole which was actively exploited in at least 1 case last month: http://davidairey.co.uk/google-gmail-security-hijack/

there seems to be a mini-epidemic of webmail account theft going on at the moment.  I&#039;m writing about another one at: http://taint.org/2007/12/21/171309a.html , and several people have pointed to other cases in the comments (yours being one).

As a matter of interest, what was the spam sent from your account?</description>
		<content:encoded><![CDATA[<p>Google had a cross-site referrer hole which was actively exploited in at least 1 case last month: <a href="http://davidairey.co.uk/google-gmail-security-hijack/" rel="nofollow">http://davidairey.co.uk/google-gmail-security-hijack/</a></p>
<p>there seems to be a mini-epidemic of webmail account theft going on at the moment.  I&#8217;m writing about another one at: <a href="http://taint.org/2007/12/21/171309a.html" rel="nofollow">http://taint.org/2007/12/21/171309a.html</a> , and several people have pointed to other cases in the comments (yours being one).</p>
<p>As a matter of interest, what was the spam sent from your account?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Martin Hjort Eriksen</title>
		<link>http://blogs.gnome.org/sudaltsov/2007/12/23/google-wtf/comment-page-1/#comment-242</link>
		<dc:creator>Martin Hjort Eriksen</dc:creator>
		<pubDate>Wed, 26 Dec 2007 22:01:20 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.gnome.org/sudaltsov/2007/12/23/google-wtf/#comment-242</guid>
		<description>If I remember correctly, after looking at the source, they have their own encryption implementation in Javascript. Therefore they are not using HTTPS.</description>
		<content:encoded><![CDATA[<p>If I remember correctly, after looking at the source, they have their own encryption implementation in Javascript. Therefore they are not using HTTPS.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sergey Udaltsov</title>
		<link>http://blogs.gnome.org/sudaltsov/2007/12/23/google-wtf/comment-page-1/#comment-241</link>
		<dc:creator>Sergey Udaltsov</dc:creator>
		<pubDate>Wed, 26 Dec 2007 16:34:17 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.gnome.org/sudaltsov/2007/12/23/google-wtf/#comment-241</guid>
		<description>Dan: the browser is mozilla-based. But extensions require special packaging.</description>
		<content:encoded><![CDATA[<p>Dan: the browser is mozilla-based. But extensions require special packaging.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ruairi</title>
		<link>http://blogs.gnome.org/sudaltsov/2007/12/23/google-wtf/comment-page-1/#comment-240</link>
		<dc:creator>Ruairi</dc:creator>
		<pubDate>Wed, 26 Dec 2007 09:37:14 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.gnome.org/sudaltsov/2007/12/23/google-wtf/#comment-240</guid>
		<description>Hi,

Boards.ie users have seen the exact same email sent from Yahoo as Gmail, again using the users&#039; credentials: passwords are certainly being stolen, but may not be a hot spot - as it&#039;s unlikely both they and you have visited the same sites. 

Yahoo gives the originating IP, and it&#039;s China, so the spammer is logging in remotely to send the mail and it&#039;s not a virus.

Is there any chance it&#039;s XSS, or a problem with Flash?</description>
		<content:encoded><![CDATA[<p>Hi,</p>
<p>Boards.ie users have seen the exact same email sent from Yahoo as Gmail, again using the users&#8217; credentials: passwords are certainly being stolen, but may not be a hot spot &#8211; as it&#8217;s unlikely both they and you have visited the same sites. </p>
<p>Yahoo gives the originating IP, and it&#8217;s China, so the spammer is logging in remotely to send the mail and it&#8217;s not a virus.</p>
<p>Is there any chance it&#8217;s XSS, or a problem with Flash?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dan Arkway</title>
		<link>http://blogs.gnome.org/sudaltsov/2007/12/23/google-wtf/comment-page-1/#comment-239</link>
		<dc:creator>Dan Arkway</dc:creator>
		<pubDate>Tue, 25 Dec 2007 20:20:56 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.gnome.org/sudaltsov/2007/12/23/google-wtf/#comment-239</guid>
		<description>Tried:
http://smir.de/cg/
? - Dan</description>
		<content:encoded><![CDATA[<p>Tried:<br />
<a href="http://smir.de/cg/" rel="nofollow">http://smir.de/cg/</a><br />
? &#8211; Dan</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dan Arkway</title>
		<link>http://blogs.gnome.org/sudaltsov/2007/12/23/google-wtf/comment-page-1/#comment-238</link>
		<dc:creator>Dan Arkway</dc:creator>
		<pubDate>Tue, 25 Dec 2007 18:55:25 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.gnome.org/sudaltsov/2007/12/23/google-wtf/#comment-238</guid>
		<description>Hi Sergey, 
I thought there is a mini version FF out there for the N800. But some JS-Version of s/http/https should work on opera, too. Already checked: http://smir.de/cg/?  Which browser do you use?
2. Checked mutt?
3. http://en.wikipedia.org/wiki/Privacy
:) 
Good luck, Dan</description>
		<content:encoded><![CDATA[<p>Hi Sergey,<br />
I thought there is a mini version FF out there for the N800. But some JS-Version of s/http/https should work on opera, too. Already checked: <a href="http://smir.de/cg/?" rel="nofollow">http://smir.de/cg/?</a>  Which browser do you use?<br />
2. Checked mutt?<br />
3. <a href="http://en.wikipedia.org/wiki/Privacy" rel="nofollow">http://en.wikipedia.org/wiki/Privacy</a><br />
 <img src='http://blogs.gnome.org/sudaltsov/wp-content/mu-plugins/tango-smilies/tango/face-smile.png' alt=':)' class='wp-smiley' /><br />
Good luck, Dan</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sergey Udaltsov</title>
		<link>http://blogs.gnome.org/sudaltsov/2007/12/23/google-wtf/comment-page-1/#comment-237</link>
		<dc:creator>Sergey Udaltsov</dc:creator>
		<pubDate>Mon, 24 Dec 2007 23:26:15 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.gnome.org/sudaltsov/2007/12/23/google-wtf/#comment-237</guid>
		<description>Dan: 1. Unfortunately that extension is not available @ Nokia N800 2. Yes I will probably 3. Except for security reasons - why not? The usability is very high IMHO</description>
		<content:encoded><![CDATA[<p>Dan: 1. Unfortunately that extension is not available @ Nokia N800 2. Yes I will probably 3. Except for security reasons &#8211; why not? The usability is very high IMHO</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dan Arkway</title>
		<link>http://blogs.gnome.org/sudaltsov/2007/12/23/google-wtf/comment-page-1/#comment-236</link>
		<dc:creator>Dan Arkway</dc:creator>
		<pubDate>Mon, 24 Dec 2007 15:13:04 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.gnome.org/sudaltsov/2007/12/23/google-wtf/#comment-236</guid>
		<description>1) Get http://www.customizegoogle.com/, put all google stuff to https. 2) Use the secure IMAP stuff with SMTP/TLS with  a good tool and do not use a web browser - they are not secure.  3) Try to get rid of gmail :) It&#039;s not good.</description>
		<content:encoded><![CDATA[<p>1) Get <a href="http://www.customizegoogle.com/" rel="nofollow">http://www.customizegoogle.com/</a>, put all google stuff to https. 2) Use the secure IMAP stuff with SMTP/TLS with  a good tool and do not use a web browser &#8211; they are not secure.  3) Try to get rid of gmail <img src='http://blogs.gnome.org/sudaltsov/wp-content/mu-plugins/tango-smilies/tango/face-smile.png' alt=':)' class='wp-smiley' />  It&#8217;s not good.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
