Gmail Vulnerability Exposed: Gmail Messages Subject to Interception

Posted in Internet Vulnerabilities on January 12th, 2005

HBX Networks has discovered a vulnerability in Google’s Gmail Email Service that allows private email to be intercepted by a third party. The bug is triggered by sending a malformed “From:” header to your own Gmail Account. You will then see third party email contents in the “Show Options” section of the email message. Since this bug was announced on Slashdot, I have not been able to receive any emails at my Gmail Account.