Kolejna luka IE 6 dzieki kt�rej mo�na wykorzysta� Google Desktop w ciekawszy spos�b …
It was bound to happen. I was recently intrigued by the possibility of utilizing Google Desktop for remote data retrieval of personal user data (such as credit cards and passwords) through the use of a malicious web page. Now, thanks to a severe design flaw in Internet Explorer, I managed to show it’s possible to covertly run searches on visitors to a web site by exploiting this vulnerability. In this article I will detail what the vulnerability in IE is and how it is used to exploit Google Desktop. If you have IE 6 and Google Desktop v2 installed you can test it for yourself in my proof of concept page.
Dzia�anie exploita mo�emy przetestowa� na hacker.co.il
Za IE Bug Lets Hackers Phish With Google Desktop – Robert McMillan, IDG News Service
Update: i ju� Google zablokowa�o explojta