internet.com
You are in the: Small Business Computing Channelarrow
Small Business Technology
» ECommerce-Guide | Small Business Computing | Webopedia | WinPlanet |Refer-It

WinPlanet Software Downloads and Reviews for Small Businesses
Search
Power Search | Tips
-
Navigate WinPlanet
WinPlanet Home Page

Software
Download Index
In-Depth Reviews
Tips & Tutorials
Updates
News

Software Categories
Browsers
Chat / Conferencing
Desktop Utilities
Development
Internet Apps
Multimedia
OS Service Packs
Productivity Tools

Software Glossary

WinPlanet Newsletter

internet.commerce
Partners & Affiliates













Small Business Computing
Small Business Computing
Ecommerce Guide
Webopedia
WinPlanet

WinPlanet / News

Download of the day
Internet Explorer 8

Most Popular Software Downloads
Opera
Internet Explorer 7
QuickTime for Windows
Winamp
Mozilla Firefox 3
Ad-Aware 2008 Free
Adobe Flash Player
Paint Shop Pro
Adobe Shockwave Player
AVG Anti-Virus Free
7-Zip

Most Popular Software Articles
Windows Vista Tips & Tricks, Part 1
Windows Vista: Worthy of the Hype?
Windows Wireless Zero Configuration: Five Steps to Sanity


Software Reviews

Google Fixes Dangerous Desktop Flaw
Google Desktop Vulnerability Makes Remote Snooping Possible
Ed Sutherland

For nearly a month, users of the Google Desktop application were exposed to a vulnerability that allowed remote hackers to snoop through private computer files.

The vulnerability was launched by malicious JavaScript code, enabling hackers to gain access to Office files, e-mails and chat logs.

Google (Quote) updated its desktop application with a patch that bars the execution of malicious scripts to protect users from future attacks. The search giant is asking users to download the latest version of Google Desktop.

"We have received no reports that this vulnerability was exploited," Google spokesman Barry Schnitt told internetnews.com.

While the current dark clouds seem to have passed, the tight coupling between the desktop and Google.com has created "the perfect storm" for future security headaches, according to Danny Allen, security director for Waltham, Mass.-based Watchfire.

Watchfire discovered in January hackers could use a cross-site scripting attack to re-enable remote access to private files turned off by Google Desktop users. Users who clicked on a phishing e-mail or visited a malicious Web site would unknowingly trigger the script, Allen told internetnews.com.

Gartner research analyst John Pescatore told internetnews.com the vulnerability posed particular problems for businesses because software "can both expose desktop information to the broader Internet" and mix external information with internal sensitive data.

The Google Desktop flaw is just the latest security vulnerability the search company has had to deal with. In January, Google fixed a Gmail flaw that could have exposed e-mail users' contact lists to attackers.

That security hole followed a scare over Google's AdWords program that could have triggered cross-site scripting (XSS), defacement, hijacked pages or other attacks against Google Adwords advertisers.

News courtesy of internetnews.com

February 21, 2007

Download Google Desktop Now!Download

Contents:
1. Google Desktop Vulnerability Makes Remote Snooping Possible


Additional Articles:

  • Google Search Hits the Desktop
  • Google Desktop Security Warning Issued
  • Google Fixes Desktop Search Flaw
  • Google Desktop: A Different Kind of Search
  • Google Officially Drills Down to the Desktop
  • Google's Latest Desktop Search Released
  • Google Desktop Out of Beta With More
  • Google: Vista Desktop Search Unfair
  • A Nod to Linux By Google's Desktop Search




  • JupiterOnlineMedia

    internet.comearthweb.comDevx.commediabistro.comGraphics.com

    Search:

    Jupitermedia Corporation has two divisions: Jupiterimages and JupiterOnlineMedia

    Jupitermedia Corporate Info


    Legal Notices, Licensing, Reprints, & Permissions, Privacy Policy.

    Advertise | Newsletters | Tech Jobs | Shopping | E-mail Offers