Proactive IT Security
 

Sukumar Dorairajulu & Lenart Ankur Brave's entries

Sukumar Dorairajulu

Senior Malware Analyst

He has 9 years of experience from analyzing malware for antivirus companies.

 

Lenart Ankur Brave

Junior Malware Analyst

He has 3 years of experience from analyzing malware for antivirus companies.

Google Buzz and Reader CSRF Vulnerability   Comment [0]

Google recently launched a Twitter-like application called Google Buzz. We have established that the application is quite vulnerable to persistent CSRF attacks when data is pulled from external data feeds.

CSRF (Cross Site Request Forgery) vulnerability works by exploiting the trust that a site has for the user. Site tasks are usually linked to specific URLs allowing certain actions to be performed on request. If a user is logged on to the site and an attacker tricks the user’s browser into making…