Google Fixing Another Error
Working overtime to right a wrong, Google is trying to fix a bug found in the Google Toolbar that may allow data theft or the installation of malicious software on a system researchers said on Tuesday.
The bug has been located in the technology the toolbar uses to add new buttons on the browser, reports InfoWorld. Since the toolbar does not process adequate checks when new buttons are installed, it is easy for hackers to make their own buttons show up during the download. The report says that security researcher Aviv Raff blogged that by imitating the origin of the toolbar button, an attacker may be able to launch a phishing attack or download malicious files.
Raff showed how the hypothetical attacks could work on his blog posting. Google confirmed yesterday that they were working to fix the issue. The user would first need to click on a web link that would pop up a window that asks the user to install a custom button on their toolbar. Once the button is installed, the user has to click on it and agree to download and run an executable file for the malware to completely be installed.
Marc Maiffret, independent security researcher said to InfoWorld of the bug that, “While it is interesting, it’s probably a low threat compared to other flaws out there,” continuing to about Google that “They should definitely assess how it slipped through the cracks.”
Last month, Raff also found a flaw in Google’s site that could allow attackers to launch a cross-site scripting attack.
Reader Comments.
No comments yet
Leave a Comment
Article Sponsor
More News
-
Loading ...
Latest News
- Funding in Brief: $10M for Spongecell, $8M for Prolexic February 9th 2012 ADOTAS – Rich media ad company Spongecell has raised $10 million [...] more »
- Google AdMob Axes Minimum Bids, Targeting Fees February 9th 2012 ADOTAS - As of Feb. 15, Google will change its [...] more »
- Infographic: HootSuite Analyses Social Media Impact of Super Bowl Ads February 7th 2012 ADOTAS - So, it’s the Tuesday after the Super Bowl, [...] more »
- Facebook to Serve Mobile Ads in Coming Weeks February 6th 2012 ADOTAS – According to a Financial Times report, Facebook will [...] more »
- Survey: 39 Percent of Mobile Users Responded to Super Bowl Ads Via Mobile February 6th 2012 ADOTAS - During the Super Bowl yesterday, mobile ad network [...] more »
- Sponsormob Leads the Way Into RTB for Mobile February 3rd 2012 ADOTAS – For more than half a decade, Berlin-based tech [...] more »
- Weird Study: Mobile Purchasing While in the Bathroom on the Rise February 3rd 2012 DM CONFIDENTIAL - According to 11mark, three-quarters of Americans with mobile [...] more »
Features
- Attribution Online: Introducers and Influencers and Closers… Oh My! February 9th 2012
- With gTLDs, Global Branding Starts with a Name February 9th 2012
- Rethinking the Online Advertising Ecosystem, Part One: Independent Publishers February 8th 2012
- Case Study: Social Ad Effectiveness February 8th 2012
- Video: “Build an SEO Foundation” Excerpt February 8th 2012
Spotlight
Sponsormob Leads the Way Into RTB for MobileADOTAS – For more than half a decade, Berlin-based tech firm Sponsormob has remained relevant in an industry characterized by [...] more...
Reader Favorites
Classifieds
- PS Technical Writer - SEO Data Analyst
- Interactive Project Manager
- Media Buyer
- PHP Software Engineer (Facebook Platform/Social AP
- SEO/Marketing Internship at Green Education Startu
Recent Comments
- Rick Noel: Nice post Mike. A few years back, we ran a large CPA campaign through an
- With gTLDs, Global Branding Starts with a Name – ADOTAS | ShopComs.com: [...] With gTLDs, Global Branding Starts with a NameADOTASADOTAS – It's no longer important how
- Domain Outlook : Latest Domain News » Blog Archive » With gTLDs, Global Branding Starts with a Name - ADOTAS: [...] With gTLDs, Global Branding Starts with a NameADOTASADOTAS – It's no longer important how
- With gTLDs, Global Branding Starts with a Name: [...] and Microsoft have little to worry about over names like UnitedThis and UnitedThat. The