AJAX Made Easy - Learn AJAX



AJAX-Tips Tutorials

 
Home AJAX-Tips
 

GNUCitisen Exposes Gmail flaw

 

GNUCitisen may be a complex name in remember much more to write, but it’s one of those groups that you have to thank that they are on our side. This is a group that evaluates Web 2.0 sites as well as those that uses Ajax for security flaws. These smart guys are able to point out what’s wrong with the site and what could possible be done by websites to avoid these problems.


Their latest target is Gmail, one of the known products of Google (who turned nine-year old recently) that attracts thousands of new accounts daily. This tool was even used by some small business to send important documents and also to chat with their clients or fellow employees. GNUCitisen may be the bearer of bad news but it’s for the best of us all. The group of programmers has recently exposed the flaw of our beloved Gmail. If this isn’t fixed by Google in time, it could mean losses by the millions of some people who valiantly use Gmail for business purposes and personal financial transaction. So just how flaw really works? When one signs in with their Gmail account, their records will automatically be recorded in the browser that as long as they don’t close the browser, the e-mail will still be alive. No need to sign-up all over again for the website. While lazily browsing to some sites, they might be able to come across a website that releases malicious codes in your computer. When the code is launched, Gmail will be susceptible to the filter that could be created by the hackers that created the code. They could easily create a filter with keywords. For example, they can search the Gmail with words like “credit” or “bank”. From there, they can easily filter the e-mail and possible read the accounts and use it to their own advantage. Before you know it, your credit card’s already been used and your bank may have transferred some money to an offshore account you can’t possibly run after. With the flaw already pointed out, those who use and plans to create Ajax for business may have to think all over again. Google has been the front runner of Ajax and has shown great usage of this. Instead of using the good old client-server interaction, the asynchronous relationship makes it even easier for the users to access vital information without even using single software on their end. But the asynchronous idea especially the Ajax has been a lot of warnings lately mainly because of the security it can create. Coding itself is really complicated with Ajax and security could be another problem. Hopefully, GNUCitisen was ahead in discovering this flaw or else millions may already have been the victim of this instrusion. Google should take a look at this problem and answer it fast! Millions of users are looking up to them to handle this situation without causing enough concerns. Even though the service is free, it’s still part of their responsibility to protect everything especially personal information.

Read Next: Astoria for Ajax



 

 

Comments



Post Your Comment:

Members Please Login
Your Name:*
e-mail ID:(required for notification)*
Image Verification: 
 
 Subscribe    

Sponsored Links