<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Hacking Horror Story&#8230;</title>
	<atom:link href="http://www.ghacks.net/2008/11/06/hacking-horror-story/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ghacks.net/2008/11/06/hacking-horror-story/</link>
	<description>A technology blog covering software, mobile phones, gadgets, security, the Internet and other relevant areas.</description>
	<lastBuildDate>Tue, 24 Nov 2009 21:56:08 -0600</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: dianoga</title>
		<link>http://www.ghacks.net/2008/11/06/hacking-horror-story/#comment-533521</link>
		<dc:creator>dianoga</dc:creator>
		<pubDate>Mon, 10 Nov 2008 14:35:16 +0000</pubDate>
		<guid isPermaLink="false">http://www.ghacks.net/2008/11/06/hacking-horror-story/#comment-533521</guid>
		<description>That&#039;s why there is Noscript and Adblock for Firefox. Don&#039;t browse without it!</description>
		<content:encoded><![CDATA[<p>That&#8217;s why there is Noscript and Adblock for Firefox. Don&#8217;t browse without it!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Joshua</title>
		<link>http://www.ghacks.net/2008/11/06/hacking-horror-story/#comment-531317</link>
		<dc:creator>Joshua</dc:creator>
		<pubDate>Fri, 07 Nov 2008 01:49:15 +0000</pubDate>
		<guid isPermaLink="false">http://www.ghacks.net/2008/11/06/hacking-horror-story/#comment-531317</guid>
		<description>yes you guys who mentioned the scripts are correct, the hacker didn&#039;t actually get the password just did something with a script to creat a filter for gmail.

I don&#039;t actually know how this stuff works =)</description>
		<content:encoded><![CDATA[<p>yes you guys who mentioned the scripts are correct, the hacker didn&#8217;t actually get the password just did something with a script to creat a filter for gmail.</p>
<p>I don&#8217;t actually know how this stuff works =)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Kris</title>
		<link>http://www.ghacks.net/2008/11/06/hacking-horror-story/#comment-531067</link>
		<dc:creator>Kris</dc:creator>
		<pubDate>Thu, 06 Nov 2008 19:03:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.ghacks.net/2008/11/06/hacking-horror-story/#comment-531067</guid>
		<description>Most likely is that his password was not cracked, but simple XSS was used while he was logged in to Gmail.

See here for an example:
http://www.gnucitizen.org/blog/google-gmail-e-mail-hijack-technique/</description>
		<content:encoded><![CDATA[<p>Most likely is that his password was not cracked, but simple XSS was used while he was logged in to Gmail.</p>
<p>See here for an example:<br />
<a href="http://www.gnucitizen.org/blog/google-gmail-e-mail-hijack-technique/" rel="nofollow">http://www.gnucitizen.org/blog/google-gmail-e-mail-hijack-technique/</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Core</title>
		<link>http://www.ghacks.net/2008/11/06/hacking-horror-story/#comment-530956</link>
		<dc:creator>Core</dc:creator>
		<pubDate>Thu, 06 Nov 2008 15:26:03 +0000</pubDate>
		<guid isPermaLink="false">http://www.ghacks.net/2008/11/06/hacking-horror-story/#comment-530956</guid>
		<description>I agree with the guy who said its the user - I don&#039;t know the guy personally, but it seems much more likely they managed to plant a trojen on his computer and gained access that way.

I am not saying a gmail hack is impossible here, im sure there are ways, but I just think its a lot more likely they gained access through him.

(Keep in mind, I don&#039;t know him, so I don&#039;t know what he does as far as security).</description>
		<content:encoded><![CDATA[<p>I agree with the guy who said its the user &#8211; I don&#8217;t know the guy personally, but it seems much more likely they managed to plant a trojen on his computer and gained access that way.</p>
<p>I am not saying a gmail hack is impossible here, im sure there are ways, but I just think its a lot more likely they gained access through him.</p>
<p>(Keep in mind, I don&#8217;t know him, so I don&#8217;t know what he does as far as security).</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anonymous</title>
		<link>http://www.ghacks.net/2008/11/06/hacking-horror-story/#comment-530919</link>
		<dc:creator>Anonymous</dc:creator>
		<pubDate>Thu, 06 Nov 2008 14:21:44 +0000</pubDate>
		<guid isPermaLink="false">http://www.ghacks.net/2008/11/06/hacking-horror-story/#comment-530919</guid>
		<description>You are naive.
Aibek obviously run some kind of malware on his personal computer and got infected by a trojan created by the so-called hacker.
Google Bifrost or Poison Ivy for more information about &quot;RATS&quot; (Remote Administration Tools).
It&#039;s called PLR (Point of Least Resistance), and that&#039;s the user in this case, not Gmail.</description>
		<content:encoded><![CDATA[<p>You are naive.<br />
Aibek obviously run some kind of malware on his personal computer and got infected by a trojan created by the so-called hacker.<br />
Google Bifrost or Poison Ivy for more information about &#8220;RATS&#8221; (Remote Administration Tools).<br />
It&#8217;s called PLR (Point of Least Resistance), and that&#8217;s the user in this case, not Gmail.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Faust-C</title>
		<link>http://www.ghacks.net/2008/11/06/hacking-horror-story/#comment-530902</link>
		<dc:creator>Faust-C</dc:creator>
		<pubDate>Thu, 06 Nov 2008 13:57:09 +0000</pubDate>
		<guid isPermaLink="false">http://www.ghacks.net/2008/11/06/hacking-horror-story/#comment-530902</guid>
		<description>Hmm I feel this was more than a &#039;hack&#039;. Considering all web mail sites have a limited amount of password fails, there maybe something more sinister at play. Then again I don&#039;t use certain items and am uber paranoid.</description>
		<content:encoded><![CDATA[<p>Hmm I feel this was more than a &#8216;hack&#8217;. Considering all web mail sites have a limited amount of password fails, there maybe something more sinister at play. Then again I don&#8217;t use certain items and am uber paranoid.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Angelo R.</title>
		<link>http://www.ghacks.net/2008/11/06/hacking-horror-story/#comment-530649</link>
		<dc:creator>Angelo R.</dc:creator>
		<pubDate>Thu, 06 Nov 2008 05:36:16 +0000</pubDate>
		<guid isPermaLink="false">http://www.ghacks.net/2008/11/06/hacking-horror-story/#comment-530649</guid>
		<description>Oddly enough this sounds almost exactly like a previous hack that was floating around for gmail. However, instead of directly gaining access to a gmail account, a bookmarklet was created that would create a filter in gmail. 

In that way, the perpertrator could get around needing to know your gmail password and just hope you clicked it. 

As far as I know, that bug was reported fixed a long time ago.</description>
		<content:encoded><![CDATA[<p>Oddly enough this sounds almost exactly like a previous hack that was floating around for gmail. However, instead of directly gaining access to a gmail account, a bookmarklet was created that would create a filter in gmail. </p>
<p>In that way, the perpertrator could get around needing to know your gmail password and just hope you clicked it. </p>
<p>As far as I know, that bug was reported fixed a long time ago.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jojo</title>
		<link>http://www.ghacks.net/2008/11/06/hacking-horror-story/#comment-530627</link>
		<dc:creator>Jojo</dc:creator>
		<pubDate>Thu, 06 Nov 2008 04:59:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.ghacks.net/2008/11/06/hacking-horror-story/#comment-530627</guid>
		<description>Which is why you should not use web email accounts for domain control.  It seems to be much easier to hack a web account than a POP3 account.</description>
		<content:encoded><![CDATA[<p>Which is why you should not use web email accounts for domain control.  It seems to be much easier to hack a web account than a POP3 account.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: venkat</title>
		<link>http://www.ghacks.net/2008/11/06/hacking-horror-story/#comment-530582</link>
		<dc:creator>venkat</dc:creator>
		<pubDate>Thu, 06 Nov 2008 04:01:56 +0000</pubDate>
		<guid isPermaLink="false">http://www.ghacks.net/2008/11/06/hacking-horror-story/#comment-530582</guid>
		<description>Is is really sad that Makeuseof Hacked its one of my favorite sites like this ,a strong password not safe enough in case of Makeuseof then what I have to follow in case of passwords as my site is not famous though to get hacked,but its good to have by  applying strong passwords and changing passwords often might help.It will be nice if you article how bloggers should approach so that these kinds of things not happen again.</description>
		<content:encoded><![CDATA[<p>Is is really sad that Makeuseof Hacked its one of my favorite sites like this ,a strong password not safe enough in case of Makeuseof then what I have to follow in case of passwords as my site is not famous though to get hacked,but its good to have by  applying strong passwords and changing passwords often might help.It will be nice if you article how bloggers should approach so that these kinds of things not happen again.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Stephen</title>
		<link>http://www.ghacks.net/2008/11/06/hacking-horror-story/#comment-530577</link>
		<dc:creator>Stephen</dc:creator>
		<pubDate>Thu, 06 Nov 2008 03:55:41 +0000</pubDate>
		<guid isPermaLink="false">http://www.ghacks.net/2008/11/06/hacking-horror-story/#comment-530577</guid>
		<description>Was it a Pailn hack? (i.e. If your password was that secure, was it your security question that was the open window?)</description>
		<content:encoded><![CDATA[<p>Was it a Pailn hack? (i.e. If your password was that secure, was it your security question that was the open window?)</p>
]]></content:encoded>
	</item>
</channel>
</rss>
