Google fixes several site security issues

Google has fixed security vulnerabilities related to its Grand Central telecom service and its Google.com Web site, the company said Monday.

Google fixed a cross-site scripting vulnerability on the log-in page for Grand Central, a service that allows people to have numerous phone numbers ring on one phone and have a unified voice mail.

A cross-site script is a vulnerability found increasingly in Web applications in which malicious code can be injected into Web pages that could be used to attack or compromise visitors to the site.

This issue was reported to us (and everyone else) this morning, and we closed it shortly after being notified,” a Google spokesman said.

The vulnerability was posted to a security e-mail list called Full Disclosure and was not reported to Google beforehand, meaning Google had to race to fix the issue before someone could write an exploit for it.

In a separate security issue, Google fixed a vulnerability that allowed people to create a spoof site that looks like it goes to the Google.com domain but actually redirects a Web surfer to a different site. Such redirect links are usually distributed via e-mail and often send people to a site with malicious code that can be used to attack or compromise the visitor’s computer.

Google, meanwhile, was working to fix a redirect vulnerability related to the site of its DoubleClick online advertising unit.

“Open URL redirection is an issue we take very seriously. As we become aware of open URL redirectors on google.com, we actively work to close them. We are also aware of redirectors using doubleclick.com and are working to address this issue,” the Google spokesman said.

The issue was reported on the Sunbelt Blog.

Popularity: 2% [?]

Pokeri
Tags : ,

Artikel terkait lainnya

Author Profile

dyatmika
Blogger campur aduk yang mengisi waktu luang

Other posts by dyatmika

Author's web site http://www.dyatmika.com



Are you satisfied with this blog?
Why not subscribe our RSS Feed? you will always get the latest post.


6 Comments


  1. 1. EURO 2008 says:

    wah, programmer2 google pasti hacker-hacker top dunia

    EURO 2008s last blog post..SEO Trik yang Lucu dan Ampuh – Anchor Text

    [Reply]

  2. 2. chodirin says:

    mempengaruhi hasil pencarian gak? :D hehehe

    chodirins last blog post..Teknik SEO Salah Kaprah

    [Reply]

  3. 3. dyatmika says:

    @bambosi
    coder google mang top..kumpulan hacker2 top lah

    @chodirin
    kan sudah dipatch sekarang.. hehehe

    dyatmikas last blog post..Google fixes several site security issues

    [Reply]

  4. 4. imcw says:

    Kirain Google nggak bisa bolong juga. :)

    imcws last blog post..Inspirasiku……..

    [Reply]

  5. 5. penyu says:

    Tapi biarpun Google perusahaan kelas atas dan isinya orang-orang yang isi otaknya kaya bubur (encer hehehe), tapi gaji dan suasana kerjanya sangat bikin iri :D

    salam kenal bro

    penyus last blog post..Antara IM2 dan TelkomFlash….

    [Reply]

  6. 6. dyatmika says:

    @penyu
    salam kenal juga

    [Reply]



Leave a Reply

Smileys:
:hihi: :hiks: :melet: :nangis: :ngakak: :puyeng: :sip: more »

CommentLuv Enabled



StatPress

Visits today: 414

Yahoo bot last visit powered by MyPagerank.Net Page Rank Personal Top Blogs TopOfBlogs Personal Business Directory - BTS Local