<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	
	xmlns:media="http://search.yahoo.com/mrss/"
		>
<channel>
	<title>Comments on: BBC Hacks into GMail Account Over WIFI. Scary S**t.</title>
	<atom:link href="http://thenextweb.com/2009/10/31/bbc-hacks-gmail-account-wifi-scary-st/feed/" rel="self" type="application/rss+xml" />
	<link>http://thenextweb.com/2009/10/31/bbc-hacks-gmail-account-wifi-scary-st/</link>
	<description>International technology news, business &#38; culture</description>
	<lastBuildDate>Sat, 26 May 2012 01:59:21 +0200</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
	<item>
		<title>By: Tony Ash</title>
		<link>http://thenextweb.com/2009/10/31/bbc-hacks-gmail-account-wifi-scary-st/#comment-442191</link>
		<dc:creator>Tony Ash</dc:creator>
		<pubDate>Sun, 06 Jun 2010 15:05:59 +0000</pubDate>
		<guid isPermaLink="false">http://thenextweb.com/?p=30841#comment-442191</guid>
		<description>Reynhardt van Blommenstein is Hacking a Google G-mail e-mail accounts at will.
He is employed by Millers Attorneys (George &amp; Cape Town) - Western Cape to do so and getting paid for it - Lefevré Joubert - 083 447 1269 - +27 (0)44 874 1140 - van Blommenstein - Great Brakriver - Garden Route South Africa.
Millers Attorneys (George &amp; Cape Town) - Western Cape.
I have complained to Google, Millers Attorneys, Mweb, South African Police, Reynhardt van Blommenstein, Law Society of South Africa no joy.</description>
		<content:encoded><![CDATA[<p>Reynhardt van Blommenstein is Hacking a Google G-mail e-mail accounts at will.<br />
He is employed by Millers Attorneys (George &amp; Cape Town) &#8211; Western Cape to do so and getting paid for it &#8211; Lefevré Joubert &#8211; 083 447 1269 &#8211; +27 (0)44 874 1140 &#8211; van Blommenstein &#8211; Great Brakriver &#8211; Garden Route South Africa.<br />
Millers Attorneys (George &amp; Cape Town) &#8211; Western Cape.<br />
I have complained to Google, Millers Attorneys, Mweb, South African Police, Reynhardt van Blommenstein, Law Society of South Africa no joy.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Reynhardt van Blommenstein</title>
		<link>http://thenextweb.com/2009/10/31/bbc-hacks-gmail-account-wifi-scary-st/#comment-442190</link>
		<dc:creator>Reynhardt van Blommenstein</dc:creator>
		<pubDate>Sun, 16 May 2010 06:27:55 +0000</pubDate>
		<guid isPermaLink="false">http://thenextweb.com/?p=30841#comment-442190</guid>
		<description>Reynhardt van Blommenstein

Hacking Google G-mail e-mail accounts at will.

He is Hacking Google G-mail e-mail accounts at will.

Reynhardt van Blommenstein - Great Brakriver - Garden Route South Africa

Email: reynhardtvb.photography@yahoo.com

Contact Number: Fax: +27 44 696 6364 Tel: +27 82 798 6268

This author made many complaints with no response.</description>
		<content:encoded><![CDATA[<p>Reynhardt van Blommenstein</p>
<p>Hacking Google G-mail e-mail accounts at will.</p>
<p>He is Hacking Google G-mail e-mail accounts at will.</p>
<p>Reynhardt van Blommenstein &#8211; Great Brakriver &#8211; Garden Route South Africa</p>
<p>Email: <a href="mailto:reynhardtvb.photography@yahoo.com">reynhardtvb.photography@yahoo.com</a></p>
<p>Contact Number: Fax: +27 44 696 6364 Tel: +27 82 798 6268</p>
<p>This author made many complaints with no response.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Charl Botha</title>
		<link>http://thenextweb.com/2009/10/31/bbc-hacks-gmail-account-wifi-scary-st/#comment-442176</link>
		<dc:creator>Charl Botha</dc:creator>
		<pubDate>Sun, 01 Nov 2009 16:55:30 +0000</pubDate>
		<guid isPermaLink="false">http://thenextweb.com/?p=30841#comment-442176</guid>
		<description>Apparently GMail has plugged this specific one by also tagging the GX auth cookie as secure, in SSL mode it can only cross via SSL.

See this post from Robert Graham&#039;s blog: http://erratasec.blogspot.com/2008/08/google-vs-sidejacking-round-7.html</description>
		<content:encoded><![CDATA[<p>Apparently GMail has plugged this specific one by also tagging the GX auth cookie as secure, in SSL mode it can only cross via SSL.</p>
<p>See this post from Robert Graham&#8217;s blog: <a href="http://erratasec.blogspot.com/2008/08/google-vs-sidejacking-round-7.html" rel="nofollow">http://erratasec.blogspot.com/2008/08/google-vs-sidejacking-round-7.html</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: ewoks</title>
		<link>http://thenextweb.com/2009/10/31/bbc-hacks-gmail-account-wifi-scary-st/#comment-442166</link>
		<dc:creator>ewoks</dc:creator>
		<pubDate>Sun, 01 Nov 2009 11:35:47 +0000</pubDate>
		<guid isPermaLink="false">http://thenextweb.com/?p=30841#comment-442166</guid>
		<description>it&#039;s not! but u can set it 2 b encrypted for every session..</description>
		<content:encoded><![CDATA[<p>it&#8217;s not! but u can set it 2 b encrypted for every session..</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mark Cheverton</title>
		<link>http://thenextweb.com/2009/10/31/bbc-hacks-gmail-account-wifi-scary-st/#comment-442165</link>
		<dc:creator>Mark Cheverton</dc:creator>
		<pubDate>Sun, 01 Nov 2009 11:22:11 +0000</pubDate>
		<guid isPermaLink="false">http://thenextweb.com/?p=30841#comment-442165</guid>
		<description>Using https improves things but doesn&#039;t solve the problem which is inherent in the way many web2.0 sites have been built with ajax. Details can be found here: http://arstechnica.com/business/news/2008/02/report-google-mail-vulnerable-to-sidejacking-despite-ssl.ars</description>
		<content:encoded><![CDATA[<p>Using https improves things but doesn&#8217;t solve the problem which is inherent in the way many web2.0 sites have been built with ajax. Details can be found here: <a href="http://arstechnica.com/business/news/2008/02/report-google-mail-vulnerable-to-sidejacking-despite-ssl.ars" rel="nofollow">http://arstechnica.com/business/news/2008/02/report-google-mail-vulnerable-to-sidejacking-despite-ssl.ars</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: simo</title>
		<link>http://thenextweb.com/2009/10/31/bbc-hacks-gmail-account-wifi-scary-st/#comment-442163</link>
		<dc:creator>simo</dc:creator>
		<pubDate>Sun, 01 Nov 2009 10:31:41 +0000</pubDate>
		<guid isPermaLink="false">http://thenextweb.com/?p=30841#comment-442163</guid>
		<description>http or https, makes no difference, because it&#039;s a man in the middle attack (using either dsniff or wsniff), I&#039;ll bet my a** on it. It&#039;s known for years, wake up people.</description>
		<content:encoded><![CDATA[<p>http or https, makes no difference, because it&#8217;s a man in the middle attack (using either dsniff or wsniff), I&#8217;ll bet my a** on it. It&#8217;s known for years, wake up people.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Julian Bond</title>
		<link>http://thenextweb.com/2009/10/31/bbc-hacks-gmail-account-wifi-scary-st/#comment-442161</link>
		<dc:creator>Julian Bond</dc:creator>
		<pubDate>Sun, 01 Nov 2009 10:03:46 +0000</pubDate>
		<guid isPermaLink="false">http://thenextweb.com/?p=30841#comment-442161</guid>
		<description>Damn, is it 2003 all over again? Unsecure wifi, is unsecure. Who knew?</description>
		<content:encoded><![CDATA[<p>Damn, is it 2003 all over again? Unsecure wifi, is unsecure. Who knew?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: rz</title>
		<link>http://thenextweb.com/2009/10/31/bbc-hacks-gmail-account-wifi-scary-st/#comment-442158</link>
		<dc:creator>rz</dc:creator>
		<pubDate>Sun, 01 Nov 2009 09:33:31 +0000</pubDate>
		<guid isPermaLink="false">http://thenextweb.com/?p=30841#comment-442158</guid>
		<description>Cookie sniffing (using kismet)

Then move the cookie into your cookie folder and browse google and your auto logged in!

You also get access to all of googles services, eg. you could upload illegal stuff or send abusive comments.

Sessions last a whole hour!

http://xeesoft.com/books/Hacking.W.N.pdf</description>
		<content:encoded><![CDATA[<p>Cookie sniffing (using kismet)</p>
<p>Then move the cookie into your cookie folder and browse google and your auto logged in!</p>
<p>You also get access to all of googles services, eg. you could upload illegal stuff or send abusive comments.</p>
<p>Sessions last a whole hour!</p>
<p><a href="http://xeesoft.com/books/Hacking.W.N.pdf" rel="nofollow">http://xeesoft.com/books/Hacking.W.N.pdf</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Charl Botha</title>
		<link>http://thenextweb.com/2009/10/31/bbc-hacks-gmail-account-wifi-scary-st/#comment-442155</link>
		<dc:creator>Charl Botha</dc:creator>
		<pubDate>Sun, 01 Nov 2009 08:43:09 +0000</pubDate>
		<guid isPermaLink="false">http://thenextweb.com/?p=30841#comment-442155</guid>
		<description>This attack is indeed possible using sidejacking.  I&#039;ve written the details up in a short post (referring back to this one): http://cpbotha.net/2009/11/01/your-gmail-account-can-be-hacked-over-insecure-wifi/</description>
		<content:encoded><![CDATA[<p>This attack is indeed possible using sidejacking.  I&#8217;ve written the details up in a short post (referring back to this one): <a href="http://cpbotha.net/2009/11/01/your-gmail-account-can-be-hacked-over-insecure-wifi/" rel="nofollow">http://cpbotha.net/2009/11/01/your-gmail-account-can-be-hacked-over-insecure-wifi/</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Thomas Costick</title>
		<link>http://thenextweb.com/2009/10/31/bbc-hacks-gmail-account-wifi-scary-st/#comment-442152</link>
		<dc:creator>Thomas Costick</dc:creator>
		<pubDate>Sun, 01 Nov 2009 05:31:41 +0000</pubDate>
		<guid isPermaLink="false">http://thenextweb.com/?p=30841#comment-442152</guid>
		<description>Google Mail blog recently recommended using HTTPS.  Easy to set up in Gmail settings, General tab.

Link to blog post:
http://gmailblog.blogspot.com/2009/10/gmail-account-security-tips.html

Watchdog programme notorious for over-hypeing issues, but this should be addressed.</description>
		<content:encoded><![CDATA[<p>Google Mail blog recently recommended using HTTPS.  Easy to set up in Gmail settings, General tab.</p>
<p>Link to blog post:<br />
<a href="http://gmailblog.blogspot.com/2009/10/gmail-account-security-tips.html" rel="nofollow">http://gmailblog.blogspot.com/2009/10/gmail-account-security-tips.html</a></p>
<p>Watchdog programme notorious for over-hypeing issues, but this should be addressed.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

