Security problems at Google and SEO-blogs.
Two security problems that have an impact on the searchenginemarket have become public in the last few days: Google did not secure their Cookie-management sufficiently enough and SEO-Uberbloggers from the USA have to deal with a scriptkiddy that is exploiting a bug in the popular Wordpress blogsystem.For a few days now, for its Blogger.com Google is offering the option to directly deliver the pages through a change in the DNS-entry of the domain to Google instead of sending the administered blogs through FTP to the owners domain. Google Blogoscoped has noticed that this domain, which has to be registered, is not being verified. This meant he just had to register a Google-subdomain and was then able read out the visitors cookies, which are bound to the domain due to security concerns, without any problems. This led to parts of the Googleaccount being compromised since Google records account data in the cookies so that the users does not always have to sign in again. Google quickly reacted and got rid of the security hole.
Wordpress-exploit
It is well known that popular and often used software is under special observation by
This posting is older than 30 days and therefore closed for new comments.