Get a Pentest and security assessment of your IT network.

News

Hacking Google Gmail accounts exploiting password reset system flaw

A serious vulnerability in the password reset process of Google account allows an attacker to hijack any account. Researchers Oren Hafif demonstrated the feasibility of a common spear-phishing attack relying on a number of flaws including Cross-site request forgery (CSRF) and cross-site scripting (XSS) The attackers site performs a CSRF with the customized email address, and once completed launches the XSS exploit. The user clicks Reset Password and then will ask to reset his password.”]

Source: http://securityaffairs.co/wordpress/19892/hacking/hacking-google-gmail.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

IntelCrawler profiled Syrian Electronic Army group

News

Wikileaks Vault 7 Imperial projects revealed the 3 hacking tools Achilles, SeaPea and Aeris