![]() |
contents | software | |||||||
| Google Desktop Vulnerability Discovered ![]() This attack describes how the malicious logic acts as a parasite, using JavaScript code to control Google Desktop functionality. While evading current information protection systems, such as anti-virus software and firewalls, the attacker could covertly hijack sensitive local information. In this paper Watchfire details the methodology of attack and provides a valid use case including a description of the basic technique and some theoretical outcomes. Finally, Watchfire provides fix recommendations that are appropriate for Google Desktop, as well as for many other web-based applications. Google has been responsive and has issued a patch which mitigates the immediate risk of the attack. write your comments about the article :: © 2007 Networking News :: home page |