Perils of persistent Logins...

| No Comments

Interesting post from Nitesh dhanjani here pointing out a problem with Gmail contact lists being available to malicious website owners.

Now this only works if you're logged into gmail, but if you've used it recently and not explicitly logged out... then it'll keep you logged in...

Now google should obviously fix this problem, but I think that there is a wider point here. Don't leave yourself logged in to websites and be very wary about what you let your browser manage for you security-wise as it's not very security wise (oh I crack myself up ;o)

Leave a comment

Pages

Powered by Movable Type 4.32-en

About this Entry

This page contains a single entry by Rory2 published on January 1, 2007 3:34 PM.

New Free Database scanner... a Windows only Java program! was the previous entry in this blog.

Software security and Vulnerability Pimps is the next entry in this blog.

Find recent content on the main index or look in the archives to find all content.