Register

Newsletter

Search

Latest News
Bangalore Blasts: Stay Updated
Apple's OS 2.1 Has Gone to Developers
Spore Demo-ed at Comic Con
Creative Introduces Mozaic
Apple Playing Favorites for App Store?
Samsung Labs Working On Next-Gen Phones?
MySpace Music to Partner With Amazon
MS to Launch Spherical Surface Next Week
Yahoo Music Store Shuts September-end
EXCLUSIVE: ASUS Speaks on the EEE PC
Latest Reviews
Intel E7200
Asus P320 PDA Phone
Steelseries USB Headphones
i.Tech iVoicePRO
Zotac GF8200A-E
User Reviews
Nokia - 6500 slide
Apple - iPod Shuffle 1GB
Motorola - A1200
Nokia - 6300
Sony Ericsson - K750i
Latest Classifieds
PC Gaming Headset...
Seagate 500gb Har...
Total PC -AMD - R...
Workers/Operators...
SAP Training in I...
Latest Downloads
SpeedyiTunes YouTube Accelerator
Internet Tools
Super media encoder
Multimedia Tools
Omziff
System Tools
Pandemic 2
Games
AdBlock Plus
Plugins and Add-ons
Latest Forum Posts
256mb will cost 500
and 128mb will c...
@bir: Thanks dude. T
hat helped! Can...
dude incase u dont k
now that illegal...
thanx for the reply
.... And, what w...
Put 2*128MB Kobian 1
68pin PC100 SDRA...
Latest AskTT Posts
Try INTERVIDEO WINDV
D COPY software....
Earlier whenever I u
sed to click any...
I have got a DVD of
a movie. When I ...
ya please send it to
kevin_jaku@hotm...
I get the message th
at my "NTDL is m...

 News  Internet
Gmail Glitch Makes it Mass Spam Generator
Techtree News Staff Email Print
May 12, 2008
According to research by the Information Security Research Team (INSERT), a flaw in Google's email service makes it vulnerable to becoming a mass spam generator. The research is part of an ongoing study on the "trust hierarchy" that exists within the email system.

The glitch is such it can allow one single Gmail account to send bulk messages to more than 4,000 email accounts, a number that surpasses Gmail's 500 messages limit for bulk messages.

The study explains that IP addresses of spam offenders are blacklisted, while those of known (good) sources are exonerated. This way, messages from blacklisted IPs are rejected even before they enter the system, while white-listed addresses are granted Carte blanche to bypass most filters.

The study (chunks of which are omitted in the public report as a courtesy to Google) states that anyone with no special Internet access privileges other than being able to connect to SMTP (TCP port 25) and HTTP (TCP port 80) servers can exploit a Gmail account in order to be granted near-unrestricted access to Google's white-listed SMTP relay service.

The vulnerability enables a hacker to bypass these blacklist/white-list based email filters and freely forge all fields in an email message by having Google's SMTP servers tricked into functioning as open SMTP relays.

During the testing, the researchers limited the number of bulk messages sent to 4,000+. However, they said there were no counter-measures to suggest that they could not have sent more messages than that -- which means they could have sent thousands of/an unlimited number of messages to other email accounts. Google is yet to comment on this issue.

Home | News | Internet



Express Your Opinion!
Comment :
Name :
City :
E-mail :
    (We email you a copy of your comment)
Word verification : Type the characters you see in the picture below.
   
 
Characters are not case-sensitive
   
(All fields essential)
 Your Comments    
Report as offensive
the exeeelent side

by hemang from bharuch on 27/05/08 07:56 PM
  

email
password
 
. sign up for a newuser
. forgot password
    Most Popular
Internet News
Chat Up A Jeevansathi
Wanted: Low-Cost $200 Web Tablet
Bangalore Blasts: Stay Updated
Yahoo Music Store Shuts September-end
MS to Launch Spherical Surface Next Week
Most Wanted Downloads
PicLens
Plugins and Add-ons
NVIDIA BIOS Editor (NiBiTor)
System Tools
WinPing
System Tools
Golden Fairway
Games
Future Pinball
Games
 Feedback | Sales Offices | Advertising Options | About TechTree | Site Map | Disclaimer  
Copyright (C) 2008 ITNation India Pvt. Ltd. All Rights Reserved.