Home › News › Industry News
Security flaw turns Gmail into spamming machine
According to a recent report by the Information Security Research Team, a flaw in Google’s email service makes it vulnerable to becoming a massive spam machine. The team claims to have successfully created a proof of concept exploiting the “trust hierarchy” that exists between mail service providers, allowing them to send 4000+ messages in a short period of time from a single account.
The study explains that IP addresses of spam offenders are often blacklisted, while those of known good sources – such as Gmail – are immune to most spam filtering. The vulnerability enables a malicious user to bypass these blacklist / white-list based email filters and freely forge all fields in an email message by having Google’s SMTP servers tricked into functioning as open SMTP relays. There has been no official comment by Google on this matter yet, but hopefully the problem will be resolved in short order.
The study explains that IP addresses of spam offenders are often blacklisted, while those of known good sources – such as Gmail – are immune to most spam filtering. The vulnerability enables a malicious user to bypass these blacklist / white-list based email filters and freely forge all fields in an email message by having Google’s SMTP servers tricked into functioning as open SMTP relays. There has been no official comment by Google on this matter yet, but hopefully the problem will be resolved in short order.
Related Stories
User Comments (2)
Post a comment|
phantasm66
on May 12, 2008 1:45 PM |
I find this sort of thing quite fascinating. |
|
Islander
on May 13, 2008 1:26 PM |
The story describes a flaw in the Gmail service that could be exploited by a "malicious user," as reported by INSERT. My daughter uses Gmail and says she sees no problems with her email. Is this still merely a potential problem, or are the Gmail filters being bypassed as we speak?Frank |
Most Popular
| Trending | Featured |
-
iOS 5.1.1 untethered jailbreak tool released, supports 4S, iPad 3
-
After five days, Facebook ranks as worst IPO flop of the decade
-
Rumor: Windows 8 RC will launch June 1, will ship with Adobe Flash
-
Rumor: AMD "Piledriver" FX CPU production to begin Q3 2012
-
Diablo III becomes the fastest-selling PC game in history
Editors' Mouse Picks
Subscribe to TechSpot
Get free exclusive content, learn about new features and tech breaking news.