As with the "Google's Friend Connect" gadget phishers catch you too
On Heise I just now read the articles on the Google APIs friends . That is quite interesting and once I've tested once on the http://gayads.biz. Quick Drupal block created, the Javascript code entered, and after 3 minutes was Google Friends Connect gadget online - as easily as good.
After playing through some gadgets such as the Wall gadget as a pin board replacement, I found the little lame: there was no obvious methods such as the logged in user can interact with each other without having to leave my page. I had as a webmaster can not make the registered users to contact directly - something like a "house law" on the site is therefore not provided.
The biggest penalty of the Google system is, in my view the following: A phisher is about the idea of this easy to copy Google friends login Replicate boxes. Then he can query the Google innocently trusting the mass e-mail account information. If the e-mail account is first landed in Siberia, then soon my Paypal account or my last password reset on the Deutsche Bank. If
use only a few millions, often naive and trusting User ID Open this Google feature, I see blooming landscapes in phishers Country ....
on the interactivity and the Sicherheitsfatures Google must surely work something else.
0 comments:
Post a Comment