<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>

<channel>
	<title>Kakkoi &#187; Gmail</title>
	<atom:link href="http://42.kaizeku.com/taxonomy/gmail//feed/" rel="self" type="application/rss+xml" />
	<link>http://42.kaizeku.com</link>
	<description>web development, software, windows tips and trick</description>
	<pubDate>Sat, 12 Jul 2008 15:10:01 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6</generator>
	<language>en</language>
	<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
		<item>
		<title>How to Register Multiple Accounts (MU) on Websites With Single Email Addresses</title>
		<link>http://42.kaizeku.com/tips/how-to-register-multiple-accounts-on-websites-with-single-email-addresses/</link>
		<comments>http://42.kaizeku.com/tips/how-to-register-multiple-accounts-on-websites-with-single-email-addresses/#comments</comments>
		<pubDate>Sun, 23 Dec 2007 22:58:24 +0000</pubDate>
		<dc:creator>Noah Ark</dc:creator>
		
		<category><![CDATA[Gmail]]></category>

		<category><![CDATA[Gravatar]]></category>

		<category><![CDATA[Tips]]></category>

		<category><![CDATA[Automattic]]></category>

		<category><![CDATA[gravatar]]></category>

		<category><![CDATA[RFC2282]]></category>

		<guid isPermaLink="false">http://blog.kakkoi.net/tips/how-to-register-multiple-accounts-on-websites-with-single-email-addresses/</guid>
		<description><![CDATA[<p><img src='http://blog.kakkoi.net/wp-content/uploads/2007/12/gravatar-logo.gif' class="fl" alt='Gravatar Logo' />You can used this technique to register on sites and forum. To name a few &#8594; digg, myspace, newsvine, 9rules, blogger  &#038; msn etc. </p>
<p>Gravatar sign-up process took less than 5 minute to complete and they don't burden you with filling form chores (i.e: address, newsletter subscriptions, marketing questionnaire). So we pick <a href="http://site.gravatar.com" rel="exernal" rev="vote-for">Gravatar</a>  Web services for this guide.</p>

<h2 class="cb" style="border-bottom:1px solid #ccc;padding:3px">Requirements</h2>
You must have the following email.  
<ol class="xoxo r" style="list-style-type:decimal">
<li><a href="http://gmail.google.com/">Gmail</a> or Google Aps Gmail</li>
</ol>
<h2 class="cb" style="border-bottom:1px solid #ccc;padding:3px;margin-top:36px">Gmail Plus-Addressing Features</h2>
<p><img src="http://gmodules.com/ig/proxy?url=http://www.shareapic.net/preview2/004669852.gif" alt="Gmail Email services Logo" width="130" height="54" class="fr" longdesc="http://www.shareapic.net/preview2/004669852.gif" />In brief, Gmail services has undocumented <strong>plus-addressing features</strong> (+) since early 2004. The plus-addressing features is mostly used for writing self notes, email filtering and mapping (google maps).</p>
<cite class="db" style="margin:10px;padding:10px;">"Gmail never announce this features (beta forever) as there is no official documentation at Gmail Help Center." — Anon </cite> [...]]]></description>
			<content:encoded><![CDATA[
<!-- google_ad_section_start -->
<p><img src='http://blog.kakkoi.net/wp-content/uploads/2007/12/gravatar-logo.gif' class="fl" alt='Gravatar Logo' />You can used this technique to register on sites and forum. To name a few &rarr; digg, myspace, newsvine, 9rules, blogger &#038; msn etc. </p>
<p>Gravatar sign-up process took less than 5 minute to complete and they don&#8217;t burden you with filling form chores (i.e: address, newsletter subscriptions, marketing questionnaire). So we pick <a href="http://site.gravatar.com" rel="external" rev="vote-for">Gravatar</a> Web services for this guide.</p>
<h2 class="cb" style="border-bottom:1px solid #ccc;padding:3px">Requirements</h2>
<p>You must have the following email. </p>
<ol class="xoxo r">
<li><a href="http://gmail.google.com/">Gmail</a> or Google Aps Gmail</li>
</ol>
<h2 class="cb" style="border-bottom:1px solid #ccc;padding:3px;margin-top:36px">Gmail Plus-Addressing Features</h2>
<p><img src="http://gmodules.com/ig/proxy?url=http://www.shareapic.net/preview2/004669852.gif" alt="Gmail Email services Logo" width="130" height="54" class="fr" longdesc="http://www.shareapic.net/preview2/004669852.gif" />In brief, Gmail services has undocumented <strong>plus-addressing features</strong> (+) since early 2004. The plus-addressing features is mostly used for writing self notes, email filtering and mapping (google maps).</p>
<p><cite class="db" style="margin:10px;padding:10px;">&#8220;Gmail never announce this features (beta forever) as there is no official documentation at Gmail Help Center.&#8221; — Anon </cite></p>
<h2 class="cb" style="border-bottom:1px solid #ccc;padding:3px;margin-top:18px">RFC 2282 - Internet Message Format</h2>
<p>Technically, the plus sign operator is a standard <abbr title="Uniform Resources Identifier">URI</abbr> protocol for handling Email address including telephone and fax (+tel, +fax ). This standard is maintained by Internet Engineering Task Force (<abbr title="The Internet Engineering Task Force">IETF</abbr> Network Group) &rarr; <a href="http://tools.ietf.org/html/rfc2822" title="RFC 2282 Internet Message Format" rel="tag external" rev="vote-for">RFC 2282</a> &#8220;Internet Official Protocol Standards - Internet Message Format&#8221;. </p>
<p><span id="more-82"></span></p>
<h2 class="cb" id="gravatar-signup-process3" style="border-bottom:1px solid #ccc;padding:3px;margin-top:36px">1. Gravatar Signup Process</h2>
<p>The signup pages can be found at the following address &darr;</p>
<ul>
<li><a href="http://site.gravatar.com/signup" rel="external bookmark">http://site.gravatar.com/signup</a></li>
</ul>
<dl id="gravatar-signup" class="profile r" style="font-size: 1.1em;color:#555">
<dt class="title" style="text-align:right;border-bottom:1px solid #ccc;padding:3px;margin:10px 0px">Normal Signup</dt>
<dd>
<p><img src='http://blog.kakkoi.net/wp-content/uploads/2007/12/bill-gates-gmail-address-gravatar-signup-page.png' alt='Bill gates gmail address gravatar signup page' style="padding:10px;border:1px solid #eee" class="db" />
</p>
<p><img src='http://gmodules.com/ig/proxy?url=http://blog.kakkoi.net/wp-content/uploads/2007/12/signup-process-billgates-at-gmail.jpg' alt='gravatar signup process billgates-at-gmail first submission' width="480" height="600" longdesc="http://blog.kakkoi.net/wp-content/uploads/2007/12/signup-process-billgates-at-gmail.jpg" />
</dd>
</dl>
<h2 class="cb" id="gravatar-signup-process-2" style="border-bottom:1px solid #ccc;padding:3px;margin-top:36px">2. Gravatar Sign-up with Gmail Plus-addressing Features</h2>
<dl class="r">
<dt class="title" style="text-align:right;border-bottom:1px solid #ccc;padding:3px;margin:10px 0px">Gmail Forwarding</dt>
<dd>
<p>Example of valid Gmail plus-sign-address code.</p>
<p style="text-align:center">
<img src='http://gmodules.com/ig/proxy?url=http://blog.kakkoi.net/wp-content/uploads/2007/12/gravatar-bill-gates-signup-process.png' alt='gravatar bill gates signup process' style="padding:10px;border:1px solid #eee" class="db"/></p>
<p><img src='http://gmodules.com/ig/proxy?url=http://blog.kakkoi.net/wp-content/uploads/2007/12/billgates-gmail-com-gravatar-signup-page.jpg' alt='Billgates-gmail-com gravatar signup page' /></p>
<h2 class="cb" id="gravatar-signup-process" style="border-bottom:1px solid #ccc;padding:3px;margin-top:18px">3. How Does It Work?</h2>
<ul class="xoxo nfo" style="list-style-type:decimal">
<li>Below is raw header received from Gravatar for billgates+mypwned.avatar@gmail.com.
<pre class="db" style="width:450px;height:200px;overflow:auto;border:1px solid #ccc;margin:12px auto;padding:3px 0px 0px 5px">
Delivered-To: billgates@gmail.com
Received: by 10.114.235.16 with SMTP id i16cs666570wah;
 Tue, 11 Dec 2007 02:13:40 -0800 (PST)
Received: by 10.100.247.14 with SMTP id u14mr17188447anh.1196668020044;
 Tue, 11 Dec 2007 02:13:40 -0800 (PST)
Received-SPF: fail (google.com: domain of support@gravatar.com does not designate 72.232.151.155 as permitted sender) client-ip=72.232.151.155;
Received: by 10.36.223.23 with POP3 id v23mf1698886nzg;
 Tue, 11 Dec 2007 02:13:40 -0800 (PST)
X-Gmail-Fetch-Info: billgates@gmail.com 1 smtp.gmail.com 995 billgates
Delivered-To: billgates+mypwned.avatar@gmail.com
Received: by 10.141.85.4 with SMTP id n4cs336075rvl;
 Tue, 11 Dec 2007 02:13:35 -0800 (PST)
Received: by 10.151.7.4 with SMTP id k4mr2609357ybi.1197368014852;
 Tue, 11 Dec 2007 02:13:34 -0800 (PST)
Return-Path: &lt;support@gravatar.com&gt;
Received: from app1.dfw.gravatar.com (155.151.232.72.static.reverse.ltdomains.com [72.232.151.155])
 by mx.google.com with ESMTP id a13si6664003rnc.2007.12.11.02.13.34;
 Tue, 11 Dec 2007 02:13:34 -0800 (PST)
Received-SPF: neutral (google.com: 72.232.151.155 is neither permitted nor denied by best guess record for domain of support@gravatar.com) client-ip=72.232.151.155;
Authentication-Results: mx.google.com; spf=neutral (google.com: 72.232.151.155 is neither permitted nor denied by best guess record for domain of support@gravatar.com) smtp.mail=support@gravatar.com
Received: from gravatar.com (localhost.localdomain [127.0.0.1])
	by app1.dfw.gravatar.com (Postfix) with ESMTP id 50EB08F36CA5
	for &lt;billgates+mypwned.avatar@gmail.com&gt;; Tue, 11 Dec 2007 10:13:34 +0000 (UTC)
Date: Tue, 11 Dec 2007 10:13:34 +0000
From: support@gravatar.com
To: billgates+mypwned.avatar@gmail.com
Message-Id: &lt;475e62ce4f383_94b15911e666750191132@app1.dfw.gravatar.com.tmail&gt;
Subject: Welcome to Gravatar
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8

Welcome to gravatar!

To activate your account, simply click on the link below or paste into the url field on your favorite browser:

http://site.gravatar.com/activate/666aff604f5eba8025c1

When you visit the above page, you'll be able to set your password and create your first gravatar, all for free!

If you have any questions about the system, feel free to contact us anytime at support@gravatar.com.

Tom Werner
Gravatar Founder
</pre>
</li>
<li>When gmail received the email with the plus-addressing code it will split it up as follow
<ul>
<li>billgates+mypwned.avatar@gmail.com</li>
<li>login-name = billgates</li>
<li>filter-name = mypwned.avatar</li>
</ul>
<p>And Gmail will forward the email to the login-name@gmail.com &rarr; billgates@gmail.com.</p>
</li>
</ul>
</dd>
</dl>
<h2 class="cb">Where to start</h2>
<p>Make sure you can received the plus-sign-address email. Try compose new email with the plus sign to yourself. </p>
<p>Example:<br />
Well, assume that your email account is : leeeroyjenkins@gmail.com<br />
So compose new email like so:</p>
<pre>
From: leeeroyjenkins@gmail.com
Send-To: leeeroyjenkins+selftest@gmail.com
Subject: Hello world
Message-Body: Over, Over, Do u read me.
</pre>
<p>That should be all. check the related links for further read on Gmail tips and documentations. </p>
<h2>Extra notes</h2>
<p>There is few special characters you can play with. </p>
<ol class="nfo r cf">
<li><span class="db fl" style="width:60px">Period</span> <span class="db fl" style="width:20px"> . </span><span class="db fl">&rarr; billgates+all.your.base.belong.to.us@gmail.com</span></li>
<li class="cl"><span class="db fl" style="width:60px"> Hypen</span> <span class="db fl" style="width:20px"> - </span><span class="db fl">&rarr; billgates+chuck-norris-fans-club@gmail.com</span></li>
<li class="cl"><span class="db fl" style="width:60px">Asterisk</span><span class="db fl" style="width:20px"> *</span><span class="db fl">&rarr; billgates+my*space@gmail.com</span></li>
</ol>
<h2 id="rel-links" style="margin-top:36px;padding-top:10px;border-top:1px solid #ccc">Related Links</h2>
<ul class="xoxo">
<li><a href="http://groups.google.com/group/Gmail-Help-Discussion">Gmail Official Discussion Group</a></li>
<li><a href="http://jimstips.com/gmailtips/gmail_tip_3_how_to_maintain_notes.html">Jim&#8217;s tip on How to maintain &#8220;notes&#8221; in Gmail</a></li>
<li><a href="http://mail.google.com/support/bin/answer.py?ctx=%67mail&#038;hl=en&#038;answer=7190" rev="google:gmail">Official Gmail Advanced Search Parameters</a>
</ul>
<!-- google_ad_section_end -->
]]></content:encoded>
			<wfw:commentRss>http://42.kaizeku.com/tips/how-to-register-multiple-accounts-on-websites-with-single-email-addresses/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Email Phishing and Spams Trends - Be wary</title>
		<link>http://42.kaizeku.com/security/vulnerability/email-phising-and-spam-trends/</link>
		<comments>http://42.kaizeku.com/security/vulnerability/email-phising-and-spam-trends/#comments</comments>
		<pubDate>Tue, 11 Dec 2007 14:09:28 +0000</pubDate>
		<dc:creator>Avice De'veréux</dc:creator>
		
		<category><![CDATA[Gmail]]></category>

		<category><![CDATA[vulnerability]]></category>

		<category><![CDATA[email]]></category>

		<category><![CDATA[Exploit]]></category>

		<category><![CDATA[Google]]></category>

		<category><![CDATA[jpeg+exploit]]></category>

		<category><![CDATA[microsoft]]></category>

		<category><![CDATA[millw0rm]]></category>

		<category><![CDATA[phishing]]></category>

		<category><![CDATA[tiff+exploit]]></category>

		<category><![CDATA[vx+heavens]]></category>

		<guid isPermaLink="false">http://blog.kakkoi.net/vulnerability/email-phising-and-spam-trends/</guid>
		<description><![CDATA[<p><img src='http://gmodules.com/ig/proxy?url=http://www.shareapic.net/preview2/004669852.gif' alt='Google Gmail Logo' class="fl" width="130" height="54" />Below is typical phishing email I received on <cite style="background:#ffd;color:#000;padding: 1px 3px">Dec 8, 2007</cite>. It was send to one of my active gmail accounts. </p>

<dl class="xoxo r cb" style="list-style-type:none;width:98%;margin: 18px auto;border:1px solid #eee;padding:10px">
<dd>
<h2 class="cb" style="margin-top:9px;border-bottom: 1px solid #ccc">The Email Header</h2>
	<dl id="phising-email" class="profile cf cb">
	<dt class="fl cl" style="width:50px">From</dt>
	<dd><strong style="font-weight:400">"Gmail Team" &#60;customercareteamalert4@gmail.com&#62;</strong></dd>
	<dt class="fl cl" style="width:50px">Subject</dt>
		<dd><strong style="font-weight:400">Gmail Warning!!!! Verify Your Gmail Account To Avoid Close</strong>.</dd>
	<dt class="cl" style="border-top:1px solid#ccc;padding:9px 0px;margin-top:4px">Part of the message &#8595;</dt>
	<dd><blockquote cite="http://gmail.com/">
	<p> 
	Dear member,<br/>
	This message is from gmail message center to all gmail free account owners
	and premium account owners. We are currently upgrading our data base and
	e-mail account center. We are deleting all unused gmail account to create
	more space for new accounts.
	
	 *To prevent your account from closing, you will have to verify it below so
	that we will know that it's a present used account.*
	
	* CONFIRM YOUR IDENTITY. VERIFY YOUR FREE GMAIL ACCOUNT NOW !!! [...]</p>
	</blockquote>
	</dd>
	</dl>
</dd>
</dl>]]></description>
			<content:encoded><![CDATA[
<!-- google_ad_section_start -->
<p><img src='http://gmodules.com/ig/proxy?url=http://www.shareapic.net/preview2/004669852.gif' alt='Google Gmail Logo' class="fl" width="130" height="54" />Below is typical phishing email I received on <cite style="background:#ffd;color:#000;padding: 1px 3px">Dec 8, 2007</cite>. It was send to one of my active gmail accounts. </p>
<p><span id="more-78"></span></p>
<dl class="xoxo r cb" style="list-style-type:none;width:511px;margin: 18px auto;border:1px solid #eee;padding:10px">
<dd>
<h2 class="cb" style="margin-top:9px;border-bottom: 1px solid #ccc">The Email Header</h2>
<dl id="phising-email" class="profile cf cb">
<dt class="fl cl" style="width:50px">From</dt>
<dd><strong style="font-weight:400">&#8220;Gmail Team&#8221; &lt;customercareteamalert4@gmail.com&gt;</strong></dd>
<dt class="fl cl" style="width:50px">Subject</dt>
<dd><strong style="font-weight:400">Gmail Warning!!!! Verify Your Gmail Account To Avoid Close</strong>.</dd>
<dt class="cl" style="border-top:1px solid#ccc;padding:9px 0px;margin-top:4px">Part of the message &darr;</dt>
<dd>
<blockquote cite="http://gmail.com/">
<p>
Dear member,<br/><br />
This message is from gmail message center to all gmail free account owners<br />
and premium account owners. We are currently upgrading our data base and<br />
e-mail account center. We are deleting all unused gmail account to create<br />
more space for new accounts.</p>
<p> *To prevent your account from closing, you will have to verify it below so<br />
that we will know that it&#8217;s a present used account.*</p>
<p>* CONFIRM YOUR IDENTITY. VERIFY YOUR FREE GMAIL ACCOUNT NOW !!! [...]</p>
</blockquote>
</dl>
<h3 class="cb">Raw Email Content</h3>
<p>This are part of of the raw message on gmail its not download via pop3. Certain meta info is not available as its got filtered by gmail services (spam automatic removal). </p>
<pre style="460px;height:300px;overflow:auto;border:1px solid #ccc">
Delivered-To random-victims-name@gmail.com
Received: by 10.114.235.19 with SMTP id i19cs230694wah;
 Sat, 8 Dec 2007 04:27:12 -0800 (PST)
Received: by 10.141.20.7 with SMTP id x7mr3231780rvi.1197116792300;
 Sat, 08 Dec 2007 04:26:32 -0800 (PST)
Received: by 10.141.115.15 with HTTP; Sat, 8 Dec 2007 04:26:32 -0800 (PST)
Message-ID: &lt;2f83b9150712080426n4a018c86mc2af4a4ed271f223@mail.gmail.com&gt;
Date: Sat, 8 Dec 2007 13:26:32 +0100
From: &quot;Gmail Team&quot; &lt;customercareteamalert4@gmail.com&gt;
Reply-To: customercareteamalert2@gmail.com
Subject: Gmail Warning!!!! Verify Your Gmail Account To Avoid Close.
MIME-Version: 1.0
Content-Type: multipart/alternative;
	boundary=&quot;----=_Part_11145_31274162.1197116792293&quot;

------=_Part_11145_31274162.1197116792293
Content-Type: text/plain; charset=ISO-8859-1
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

 Dear Member*,* **
 * Account Alert*
***
 *
 *VERIFY YOUR GMAIL ACCOUNT NOW TO AVOID CLOSE !!!*
***GMAI L
*Dear Member*,*
 This message is from gmail message center to all gmail free account owners
and premium account owners. We are currently upgrading our data base and
e-mail account center. We are deleting all unused gmail account to create
more space for new accounts.

 *To prevent your account from closing, you will have to verify it below so
that we will know that it's a present used account.*

* CONFIRM YOUR IDENTITY. VERIFY YOUR FREE GMAIL ACCOUNT NOW !!!

 &lt;http://amazon.com/&gt;
 Gmail! ID:.........................

 Password:........................

 Your Birthday:.................

 Your Country or Territory:...........
 Enter the Security
Characters:......... [image: Registration
Verification Code]
*

 *Warning!!! **Account owner that refuses to update his or her account
before two weeks of receiving this warning will lose his or her account
permanently. *
**
*Sincerely,*
*Gmail Team*

------=_Part_11145_31274162.1197116792293
Content-Type: text/html; charset=ISO-8859-1
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

&lt;table style=&quot;WIDTH: 595px; HEIGHT: 813px&quot; width=&quot;595&quot; border=&quot;0&quot;&gt;
&lt;tbody&gt;
&lt;tr bgcolor=&quot;#cccc99&quot;&gt;
&lt;td valign=&quot;center&quot; colspan=&quot;3&quot;&gt;&lt;font face=&quot;Arial,Helvetica&quot; color=&quot;#333300&quot; size=&quot;+0&quot;&gt;&lt;span style=&quot;FONT-SIZE: 13px; FONT-FAMILY: Arial&quot;&gt;Dear&amp;nbsp;&lt;font size=&quot;3&quot;&gt;Member&lt;/font&gt;&lt;strong&gt;,&lt;/strong&gt;&lt;/span&gt;&lt;/font&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;
&lt;td colspan=&quot;3&quot;&gt;&lt;font face=&quot;Arial,Helvetica&quot; size=&quot;-1&quot;&gt;
&lt;div align=&quot;center&quot;&gt;&lt;font face=&quot;Arial Cyr&quot; size=&quot;2&quot;&gt;&lt;span style=&quot;FONT-SIZE: 13px; FONT-FAMILY: Arial&quot;&gt;&lt;font face=&quot;Arial Cyr&quot; size=&quot;2&quot;&gt;&lt;font face=&quot;Arial Cyr&quot; size=&quot;2&quot;&gt;&lt;span style=&quot;FONT-SIZE: 23px; FONT-FAMILY: Arial&quot;&gt;&lt;b&gt;&lt;font color=&quot;#dd6600&quot;&gt;
&lt;img style=&quot;WIDTH: 430px; HEIGHT: 99px&quot; height=&quot;330&quot; src=&quot;http://www.google.com/intl/en/press/images/logos/gmail.jpg&quot; width=&quot;418&quot;&gt;&lt;/font&gt;&lt;/b&gt;&lt;/span&gt;&lt;/font&gt;&lt;/font&gt;&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;
&lt;div align=&quot;center&quot;&gt;
&lt;div&gt;&lt;font face=&quot;Arial Cyr&quot; size=&quot;2&quot;&gt;&lt;span style=&quot;FONT-SIZE: 13px; FONT-FAMILY: Arial&quot;&gt;&lt;font face=&quot;Arial Cyr&quot; size=&quot;2&quot;&gt;&lt;font face=&quot;Arial Cyr&quot; size=&quot;2&quot;&gt;&lt;span style=&quot;FONT-SIZE: 23px; FONT-FAMILY: Arial&quot;&gt;&lt;b&gt;&lt;u&gt;&lt;font color=&quot;#ff0000&quot;&gt;
&amp;nbsp;Account Alert&lt;/font&gt;&lt;/u&gt;&lt;/b&gt;&lt;/span&gt;&lt;/font&gt;&lt;/font&gt;&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;&lt;/div&gt;
&lt;div align=&quot;center&quot;&gt;&lt;font face=&quot;Arial Cyr&quot; size=&quot;2&quot;&gt;&lt;span style=&quot;FONT-SIZE: 13px; FONT-FAMILY: Arial&quot;&gt;&lt;font face=&quot;Arial Cyr&quot; size=&quot;2&quot;&gt;&lt;font face=&quot;Arial Cyr&quot; size=&quot;2&quot;&gt;&lt;span style=&quot;FONT-SIZE: 23px; FONT-FAMILY: Arial&quot;&gt;&lt;strong&gt;
&lt;/strong&gt;&lt;/span&gt;&lt;b&gt;&lt;u&gt;&lt;font face=&quot;Arial&quot; color=&quot;#ff0000&quot;&gt;&lt;/font&gt;&lt;/u&gt;&lt;br&gt;&amp;nbsp; &lt;/b&gt;&lt;/font&gt;&lt;/font&gt;&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;
&lt;div align=&quot;center&quot;&gt;
&lt;table cellspacing=&quot;0&quot; cellpadding=&quot;4&quot; width=&quot;585&quot; border=&quot;0&quot;&gt;
&lt;tbody&gt;
&lt;tr bgcolor=&quot;#a0b8c8&quot;&gt;
&lt;td colspan=&quot;2&quot;&gt;
&lt;div align=&quot;center&quot;&gt;&lt;font face=&quot;Arial&quot;&gt;&lt;font face=&quot;Arial Narrow&quot; size=&quot;4&quot;&gt;&lt;u&gt;&lt;strong&gt;VERIFY YOUR GMAIL ACCOUNT NOW TO AVOID CLOSE&amp;nbsp;!!!&lt;/strong&gt;&lt;/u&gt;&lt;/font&gt;&lt;/font&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;/div&gt;
&lt;div align=&quot;center&quot;&gt;&lt;font face=&quot;Arial Cyr&quot; size=&quot;2&quot;&gt;&lt;font face=&quot;Arial Cyr&quot; size=&quot;2&quot;&gt;&lt;font face=&quot;Arial Cyr&quot; size=&quot;2&quot;&gt;&lt;strong&gt;&lt;font size=&quot;5&quot;&gt;&lt;font face=&quot;arial&quot;&gt;&lt;/font&gt;&lt;/font&gt;&lt;/strong&gt;&lt;/font&gt;&lt;/font&gt;&lt;/font&gt;&lt;font face=&quot;Arial Cyr&quot; size=&quot;2&quot;&gt;
&lt;font face=&quot;Arial
 Cyr&quot; size=&quot;2&quot;&gt;&lt;font face=&quot;Arial Cyr&quot; size=&quot;2&quot;&gt;&lt;strong&gt;&lt;font face=&quot;Arial&quot;&gt;&lt;font size=&quot;7&quot;&gt;&lt;u&gt;&lt;font color=&quot;#0000bf&quot;&gt;G&lt;/font&gt;&lt;font color=&quot;#ff0000&quot;&gt;M&lt;/font&gt;&lt;font color=&quot;#ffff00&quot;&gt;A&lt;/font&gt;&lt;font color=&quot;#0000bf&quot;&gt;I&lt;/font&gt;&lt;font color=&quot;#007f40&quot;&gt;
 L&lt;/font&gt;&lt;/u&gt;&lt;/font&gt;&lt;/font&gt;&lt;br&gt;&lt;/strong&gt;&lt;span style=&quot;FONT-SIZE: 21px; FONT-FAMILY: Arial&quot;&gt;&lt;font color=&quot;#ff0000&quot;&gt;Dear&lt;/font&gt;&lt;font color=&quot;#ff0000&quot;&gt;&amp;nbsp;Member&lt;/font&gt;&lt;font color=&quot;#ff0000&quot;&gt;&lt;strong&gt;,&lt;/strong&gt;&lt;/font&gt;&lt;/span&gt;&lt;/font&gt;&lt;/font&gt;
 &lt;/font&gt;&lt;/div&gt;&lt;/font&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;font face=&quot;Arial Cyr&quot; color=&quot;#124282&quot; size=&quot;2&quot;&gt;&lt;span style=&quot;FONT-SIZE: 13px; FONT-FAMILY: Arial&quot;&gt;
&lt;div class=&quot;MsoNormal&quot;&gt;&lt;span style=&quot;FONT-SIZE: 10pt; COLOR: rgb(18,66,130); FONT-FAMILY: Arial&quot;&gt;&lt;font color=&quot;#0000ff&quot;&gt;&lt;span style=&quot;FONT-SIZE: 10pt; FONT-FAMILY: Arial&quot;&gt;&lt;font color=&quot;#00007f&quot;&gt;This message is from gmail message center to all&amp;nbsp;gmail free account owners and premium account owners. We are currently upgrading our data base and e-mail account center. We are deleting all unused&amp;nbsp;gmail account to create more space for new accounts.
&lt;/font&gt;&lt;/span&gt;&lt;/font&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div class=&quot;MsoNormal&quot;&gt;&lt;span style=&quot;FONT-SIZE: 10pt; COLOR: rgb(18,66,130); FONT-FAMILY: Arial&quot;&gt;&lt;/span&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;MsoNormal&quot;&gt;
&lt;div class=&quot;MsoNormal&quot; style=&quot;MARGIN: 0in 0in 0pt&quot;&gt;&lt;font face=&quot;Times

 New

 Roman&quot;&gt;&lt;strong&gt;To prevent your account from closing, you will have to&amp;nbsp;verify it&amp;nbsp;below so that we will know that it&amp;#39;s a present used account.&lt;/strong&gt;&lt;/font&gt;&lt;/div&gt;&lt;span style=&quot;FONT-SIZE: 10pt; COLOR: rgb(18,66,130)&quot;&gt;
&lt;/span&gt;&lt;/div&gt;
&lt;div class=&quot;MsoNormal&quot;&gt;&lt;span style=&quot;FONT-SIZE: 10pt; COLOR: rgb(18,66,130)&quot;&gt;&lt;/span&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;MsoNormal&quot;&gt;&lt;strong&gt;&lt;span style=&quot;FONT-SIZE: 10pt; COLOR: rgb(18,66,130); FONT-FAMILY: Arial&quot;&gt;
&lt;table cellspacing=&quot;0&quot; cellpadding=&quot;4&quot; width=&quot;585&quot; border=&quot;0&quot;&gt;
&lt;tbody&gt;
&lt;tr bgcolor=&quot;#a0b8c8&quot;&gt;
&lt;td colspan=&quot;2&quot;&gt;&lt;font size=&quot;4&quot;&gt;
&lt;div&gt;&lt;strong&gt;
&lt;font size=&quot;4&quot;&gt;
&lt;div&gt;&lt;strong&gt;CONFIRM YOUR IDENTITY. VERIFY YOUR FREE GMAIL ACCOUNT NOW !!!&lt;/strong&gt; &lt;/div&gt;&lt;/font&gt;&lt;/strong&gt;&lt;/div&gt;&lt;/font&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;
&lt;div&gt;&lt;strong&gt;&lt;font size=&quot;5&quot;&gt;&lt;font face=&quot;arial&quot;&gt;&amp;nbsp;
&lt;div&gt;
&lt;div&gt;&lt;img style=&quot;WIDTH: 469px; HEIGHT: 75px&quot; height=&quot;75&quot; src=&quot;http://pics.ebaystatic.com/aw/pics/securityCenter/hdr1_649x75.gif&quot; width=&quot;649&quot;&gt;&lt;/div&gt;
&lt;div&gt;&lt;font size=&quot;2&quot;&gt;&lt;font face=&quot;Verdana&quot;&gt;&lt;strong&gt;&lt;a href=&quot;http://amazon.com/&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;&lt;span id=&quot;lw_1190759841_12&quot;&gt;&lt;font color=&quot;#003399&quot;&gt;&lt;/font&gt;&lt;/span&gt;&lt;/a&gt;&lt;/strong&gt;&lt;/font&gt;&lt;/font&gt;&amp;nbsp;&lt;/div&gt;&lt;/div&gt;&lt;/font&gt;
&lt;/font&gt;&lt;/strong&gt;&lt;/div&gt;
&lt;div&gt;&lt;strong&gt;&lt;font size=&quot;5&quot;&gt;&lt;font face=&quot;arial&quot;&gt;&lt;font face=&quot;arial narrow&quot; size=&quot;4&quot;&gt;
&lt;div class=&quot;MsoNormal&quot; style=&quot;MARGIN: 0in 0in 0pt&quot;&gt;&lt;strong&gt;&lt;span style=&quot;FONT-SIZE: 13.5pt&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;Gmail! ID:.........................&lt;/span&gt;&lt;/strong&gt;&lt;/div&gt;
&lt;div class=&quot;MsoNormal&quot; style=&quot;MARGIN: 0in 0in 0pt&quot;&gt;&lt;strong&gt;&lt;span style=&quot;FONT-SIZE: 13.5pt&quot;&gt;&lt;/span&gt;&lt;/strong&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;MsoNormal&quot; style=&quot;MARGIN: 0in 0in 0pt&quot;&gt;&lt;strong&gt;&lt;span style=&quot;FONT-SIZE: 13.5pt&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;Password:........................&lt;/span&gt;&lt;/strong&gt;&lt;/div&gt;
&lt;div class=&quot;MsoNormal&quot; style=&quot;MARGIN: 0in 0in 0pt&quot;&gt;&lt;strong&gt;&lt;span style=&quot;FONT-SIZE: 13.5pt&quot;&gt;&lt;/span&gt;&lt;/strong&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;MsoNormal&quot; style=&quot;MARGIN: 0in 0in 0pt&quot;&gt;&lt;font size=&quot;4&quot;&gt;&lt;font face=&quot;arial narrow&quot;&gt;&lt;strong style=&quot;FONT-FAMILY: arial narrow&quot;&gt;&lt;span style=&quot;FONT-SIZE: 13.5pt&quot;&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Your Birthday:.................&lt;/span&gt;&lt;/strong&gt;
 &lt;/font&gt;&lt;/font&gt;&lt;/div&gt;
&lt;div class=&quot;MsoNormal&quot; style=&quot;MARGIN: 0in 0in 0pt&quot;&gt;&lt;font size=&quot;4&quot;&gt;&lt;font face=&quot;arial
 narrow&quot;&gt;&lt;strong style=&quot;FONT-FAMILY: arial narrow&quot;&gt;&lt;span style=&quot;FONT-SIZE: 13.5pt&quot;&gt;&lt;/span&gt;&lt;/strong&gt;&lt;/font&gt;&lt;/font&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;MsoNormal&quot; style=&quot;MARGIN: 0in 0in 0pt&quot;&gt;&lt;strong&gt;&lt;span style=&quot;FONT-SIZE: 13.5pt&quot;&gt;&lt;label for=&quot;persistent&quot;&gt;&lt;/label&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Your Country or Territory:...........&lt;/span&gt;&lt;/strong&gt; &lt;/div&gt;&lt;/font&gt;&lt;/font&gt;&lt;/font&gt;&lt;/strong&gt;
&lt;/div&gt;
&lt;div&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;Enter the &lt;strong&gt;Security Characters:.........&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;img style=&quot;WIDTH: 125px; HEIGHT: 38px&quot; alt=&quot;Registration Verification Code&quot; src=&quot;https://ab.login.yahoo.com/img/LVnEpeVZFekTjDHcj06RTVxEZ3._lwVb0bZmRLXJUxldX3JOnZnejReq4nmXD_..xGmoMjBT9h9WFcSARc5o427WyZP6hQ1z1juqhTkOyV68FA04yd2HiHVj.jpg&quot; border=&quot;0&quot;&gt;
 &lt;/strong&gt;&lt;/div&gt;&lt;/span&gt;&lt;/strong&gt;&lt;/div&gt;
&lt;div class=&quot;MsoNormal&quot;&gt;&lt;span style=&quot;FONT-SIZE: 10pt; COLOR: rgb(18,66,130); FONT-FAMILY: Arial&quot;&gt;&lt;/span&gt;&amp;nbsp;&lt;/div&gt;
&lt;div class=&quot;MsoNormal&quot;&gt;&lt;span style=&quot;FONT-SIZE: 10pt; COLOR: rgb(18,66,130); FONT-FAMILY: Arial&quot;&gt;&lt;img style=&quot;WIDTH: 148px; HEIGHT: 53px&quot; height=&quot;139&quot; src=&quot;http://www.genbeta.com/images/2007/01/gmail%20logo%20blanco.gif&quot; width=&quot;118&quot;&gt;
 &lt;/span&gt;&lt;/div&gt;
&lt;div&gt;&lt;strong&gt;&lt;span style=&quot;FONT-SIZE: 12pt; COLOR: red; FONT-FAMILY: Arial&quot;&gt;Warning!!! &amp;nbsp;&lt;/span&gt; &lt;/strong&gt;&lt;strong&gt;&lt;span style=&quot;FONT-SIZE: 12pt; COLOR: black&quot;&gt;Account owner that refuses to update his or her account before two weeks of receiving this warning will lose his or her account permanently.
&lt;/span&gt;&lt;/strong&gt;&lt;/div&gt;
&lt;div&gt;&lt;strong&gt;&lt;span style=&quot;FONT-SIZE: 12pt; COLOR: black&quot;&gt;&lt;/span&gt;&lt;/strong&gt;&amp;nbsp;&lt;/div&gt;
&lt;div&gt;&lt;strong&gt;&lt;span style=&quot;FONT-SIZE: 12pt; COLOR: black&quot;&gt;Sincerely,&lt;/span&gt;&lt;/strong&gt;&lt;/div&gt;
&lt;div&gt;&lt;strong&gt;&lt;span style=&quot;FONT-SIZE: 12pt; COLOR: black&quot;&gt;Gmail Team&lt;/span&gt;&lt;/strong&gt;&lt;/div&gt;&lt;/span&gt;&lt;/font&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;

------=_Part_11145_31274162.1197116792293--
</pre>
<dt style="margin-bottom:10px">
They used Outlook to published this email and leeched numbers of images across different &#8220;known&#8221; web services &darr;</dt>
<dd class="title" style="border-bottom:1px dotted #ccc"><span class="fl" style="width:100px">Image</span> <span>Sources</span></dd>
<dd class="cl"><span class="fl" style="width:100px"> Gmail Logo: </span> <a href="http://www.google.com/intl/en/press/images/logos/gmail.jpg">Google Presskit logo</a></dd>
<dd class="fl"><span class="fl" style="width:100px">Captcha :</span> <a href="https://ab.login.yahoo.com/img/LVnEpeVZFekTjDHcj06RTVxEZ3._lwVb0bZmRLXJUxldX3JOnZnejReq4nmXD_..xGmoMjBT9h9WFcSARc5o427WyZP6hQ1z1juqhTkOyV68FA04yd2HiHVj.jpg">yahoo (SSL)</a></dd>
<dd class="cl"><span class="fl" style="width:100px">Gmail Logo 2:</span> <a href="http://www.genbeta.com/images/2007/01/gmail%20logo%20blanco.gif">genbeta.com</a> (might be their host)</dd>
<dd class="cl"><span class="fl" style="width:100px">Header:</span> <a href="http://pics.ebaystatic.com/aw/pics/securityCenter/hdr1_649x75.gif">EbayStatic Server</a></dd>
</dl>
<h2>Whats the motiff</h2>
<p>It may seem funny to read the message as this are pretty much a script kiddies at work. I&#8217;m sure that most savvy users will not trust this types of threat. But what most people unaware of is the &#8220;Image&#8221; portions of the message. It can play a big role for expoiting email.</p>
<p class="note" style="padding:10px;margin:10px;width:85%;border:1px solid #eee"><span style="font-weight:700">QuickInfo:</span> Spam &#8220;images&#8221; trends start around <a href="http://www.ironport.com/">june 2006</a> and earlier version of popular email client (Outlook and Thunderbird) doesn&#8217;t block images by default. </p>
<p> If you are familliar with Internet Security in general,you may notice that there is many attemp and proof of concept method in exploiting Images like &#8220;<a href="http://blog.kakkoi.net/uri/aHR0cDovL21pbHcwcm0ub3JnL2V4cGxvaXRzLzQ2MTY.curie,80,302" rel="external nofollow" title="Tiff Exploit Sources at Milw0rm">TIFF</a> &#038; <a href="http://www.google.com/search?q=microsoft+jpeg+exploit" rev="google:query" rel="external">JPEG</a>&#8220;. Both of this vulnurebilities exists in Internet Explorer Browser and various microsoft windows products. While we can only make educated guesses as there is no real working proof yet.</p>
<p><tt>My doodling scenario produce this &darr;</tt></p>
<p class="note" style="padding:10px;margin:10pxl;background-color:#f9f9f9;width:95%"> Session &#8220;hacker&#8221; create a malicious server side image &rarr; proxy tunnel send to multiple email server &rarr; the curious victim open the email &rarr; steal client informations (cookie or server session cookie) &rarr; spoof the request &rarr; send RST back to client (reset) &rarr; dump the victims data in one instance. &rarr; write signature on victim email (avoid loop) &rarr; propogate using victims session &rarr; new net-worm is born</p>
<p> Try <abbr title="search">digging</abbr> around <strong>VX Heavens</strong> &#038; <strong>milw0rm</strong> Database you&#8217;ll find something to start thinkering.</p>
<!-- google_ad_section_end -->
]]></content:encoded>
			<wfw:commentRss>http://42.kaizeku.com/security/vulnerability/email-phising-and-spam-trends/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Firefox Freeze While on Gmail</title>
		<link>http://42.kaizeku.com/google/firefox-freeze-while-on-gmail/</link>
		<comments>http://42.kaizeku.com/google/firefox-freeze-while-on-gmail/#comments</comments>
		<pubDate>Tue, 04 Dec 2007 07:58:56 +0000</pubDate>
		<dc:creator>Nick B</dc:creator>
		
		<category><![CDATA[Gmail]]></category>

		<category><![CDATA[Google]]></category>

		<category><![CDATA[Mozilla Firefox]]></category>

		<category><![CDATA[firefox+freezem firebug]]></category>

		<category><![CDATA[no-scriptsm]]></category>

		<guid isPermaLink="false">http://blog.kakkoi.net/google/firefox-freeze-while-on-gmail/</guid>
		<description><![CDATA[<img src='http://blog.kakkoi.net/wp-content/uploads/2007/12/gmail.gif' alt='gmail freeze'  style="margin:0pt 5px 1px 0pt;float:left"/>Recent update on Gmail has to many "Remote call" (AJAX) running (every 10secs) in the background. It will get really slow if you has a large numbers of email and spam. I'm suffering the dreaded "<strong>firefox freeze over</strong>" syndrome.

Below is a list of addons that will cause "firefox to freezeeeeeeek".  
<ul>
<li>Firebug<li>
<li> Noscripts.</li>
</ul>
Its advice to disabled both of this addons or revert gmail back to older versions. 

<small>uri code to revert gmail to older versions</small> 
<tt>http://mail.google.com/mail/?ui=1</tt>.


As gmail is getting more crappy with "overload features". I think I should start using <a rel="external" title="Thunderbird Email Client" href="www.mozilla.com/thunderbird/ " rev="mozilla:thunderbird">thunderbird</a> more often. 

p/s:  At this time of writing Google Aps Gmail is still with older version so you wont have this issue. 

]]></description>
			<content:encoded><![CDATA[
<!-- google_ad_section_start -->
<p><img src="http://blog.kakkoi.net/wp-content/uploads/2007/12/gmail.gif" alt="gmail freeze" style="margin: 0pt 5px 1px 0pt; float: left" />Recent update on Gmail has to many &#8220;Remote call&#8221; (AJAX) running (every 10secs) in the background. It will get really slow if you has a large numbers of email and spam. I&#8217;m suffering the dreaded &#8220;<strong>firefox freeze over</strong>&#8221; syndrome.</p>
<p>Below is a list of addons that will cause &#8220;firefox to freezeeeeeeeee&#8221;.</p>
<ul>
<li>Firebug</li>
<li></li>
<li> Noscripts.</li>
</ul>
<p>Its advice to disabled both of this addons or revert gmail back to older versions.</p>
<p><small>uri code to revert gmail to older versions</small><br />
<tt class="di">http://mail.google.com/mail/?ui=1</tt>.</p>
<p>As gmail is getting more crappy with &#8220;overload features&#8221;. I think I should start using <a href="http://www.mozilla.com/en-US/thunderbird/" rel="external" title="Thunderbird Email Client" rev="mozilla:thunderbird">thunderbird</a> more often.</p>
<p>p/s: At this time of writing Google Aps Gmail is still with older version so you wont have this issue.</p>
<h2 class="cb">Related Posts</h2>
<ul class="xoxo">
<li><a href="/firefox/firefox-20012-security-release/">Firefox 2.0.0.12 Urgent Security Release</a></li>
</ul>
<!-- google_ad_section_end -->
]]></content:encoded>
			<wfw:commentRss>http://42.kaizeku.com/google/firefox-freeze-while-on-gmail/feed/</wfw:commentRss>
		</item>
	</channel>
</rss>
