Friday, February 1, 2008

Google sidejacking

A while back I blogged about sidejacking being done at BlackHat. I figured just use SSL and everything would be groovy. What I didn't know was that gmail would stop attempting to use SSL connections if SSL was being blocked (like when you're attempting to log into the T-Mobile at the local starbucks). Read the rest and be very afraid.

No comments: