TECH.BLORGE.com
VISTA.BLORGE.com
MAC.BLORGE.com
GAMER.BLORGE.com

February 27, 2008 |

Gmail bot detection system hacked

By Jonathan Schlaffer





Gmail bot detection system hacked It was only a matter of time.  Hackers have found a way to hack Gmail’s CAPTCHA (Completely Automated Public Turing) system which could potentially allow them to send spam using Gmail accounts en masse.  CAPTCHA systems are used to tell humans apart from other computers to prevent this kind of thing.

Hackers could sign up for as many Gmail accounts as needed, automatically and that would allow their “reign of terror” begin.  It’s not as easy as it sounds, the CAPTCHA system used by Google is not easily tricked.

ArsTechnica did some checking into the work required to trick Google’s CAPTCHA system and it was quite a bit of work.  Two bot hosts were required to perform a successful hack.  Two were needed because the first host could fail at cracking the system and/or timeout.  The second system was in place to check the work of the first or to pick up from where it timed out or failed.

Only 20% the hacks were successful but it doesn’t matter.  Considering that thousands of requests could be sent in at once, 20% becomes a high success rate.

Traditional CAPTCHA systems will only be cracked more often as time goes on and newer systems will be needed to replace them.  Some may involve audio or other types of visual cues.  Not exactly ideal because users with disabilities may have trouble with them.

At least Google as able to put up more of a fight than Windows Live.  I guess that’s not really saying much, after all.

Related:

  • Phising site promises free Gmail storage upgrades
  • Gmail enables IMAP: What it means for your iPhone, computer, and more
  • New Gmail vulnerability exposed
  • Gmail outage hit Google Apps as well
  • Google to increase Gmail storage before end of October




  • Sign up for the BLORGE daily email newsletter

    2 Responses to “Gmail bot detection system hacked”

    1. dev:

      sdfsdf

    2. Tort King:

      Gmail can’t be hacked. That’s b.s. My computer guy said it isn’t possible. ticketslayer@gmail.com

    Leave a Reply:

    Copyright © 2008 Engaging and compelling blogs that entertain and inform