|
Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com |
http-equiv_at_excite.com
Date: Sun Aug 11 2002 - 13:07:30 CDT
"GreyMagic Software" <security
greymagic.com> wrote
> #2. Control all visual configuration options.
> ---------------------------------------------
>
> The method of registering changes in options to the Google toolbar
is very
> insecure. The toolbar is using a special URL to inflict the changes,
> "http://toolbar.google.com/command?
doesn't let
> the changes occur if the current document is outside of google.com
or the
> special res:// protocol.
Looks like you can set the user's preferences remotely too.
Preferences include:
Interface Language
Search Language
Safe Search Filtering
Perhaps the only concern would be resetting the Safe Search Filter:
Do not filter my search results.
'containing explicit sexual content from appearing in search result'
hmmm...
Quick and dirty demo. May be a language constraint:
http://www.malware.com/google.html
-- http://www.malware.com
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]