Skip to main content

Google Apps Flaw Allowed Hacker to Hijack Account and Disable Two-factor Authentication

  • January 23, 2015
  • 0 replies
  • 475 views

Jasper_The_Rasper
Moderator
Forum|alt.badge.img+54
Thursday, January 22, 2015 Wang Wei
 
  
http://2.bp.blogspot.com/-IG1sPZeVAEM/VMIMpBXCURI/AAAAAAAAhjg/p2ICKQZ9b5A/s728/google-account-hacking.pngA critical cross-site scripting (XSS) vulnerability in the Google Apps administrator console allowed cyber criminals to force a Google Apps admins to execute just about any request on the https://admin.google.com/ domain. The Google Apps admin console allows administrators to manage their organization’s account. Administrators can use the console to add new users, configure permissions, manage security settings and enable Google services for your domain. The feature is primarily used by many businesses, especially those using Gmail as the e-mail service for their domain. Full Article. 

0 replies

Be the first to reply!

Reply