Another Blow To Orkut! A new bug for spammers…

ADVERTISEMENTS

Orkut_Loves_Spam

Remember above image? Few weeks ago we published a bug in Orkut’s click tracking mechanism which let spammer send third party links bypassing image verification!

Now for those who missed that… A new bug is found in Google Video search history feature! Now Whats a big deal you might say? Well Google Videos and Orkut are both owned by Google Inc. So URL which contains google.com in domain part never encounters image verification!

Now consider link below:

http://upload.video.google.com/searchhistory/url?url=//www.devilsworkshop.org

 

You can replace any site URL with www.devilsworkshop.org in it and put the link in scraps! Orkut will never ask for image verification!

This bug is more severe compared to bug in Click Tracking mechanism. Fixing this may be still simple but there are many Googles service and so there must be many bugs like this! All this means a lot more spam in coming month on Orkut… :-(

Credits: Sumit Kalra found this while analyzing a recent spam "VORUS VIDEO SCRAP" code!

Share and Enjoy:
  • Digg
  • del.icio.us
  • IndianPad
  • StumbleUpon
  • Technorati
  • YahooMyWeb
  • Furl
  • Reddit
  • Google
  • TwitThis
  • Facebook
  • Slashdot
  • SphereIt
  • blogmarks
  • MisterWong

If you like this post, you may subscribe to my RSS feed or email alerts to receive automatic updates in future! Thanks for reading... :-)

Comment RSS · TrackBack URI

2 Comments (including Pingbacks/Trackbacks) so far »

  1. #
    TechPavan on February 27, 2008

    Hey, did you notice today? Orkut has fixed this bug since today morning as I have observed. Now, even google urls also need capcha verification….Yesterday, this bug still existed and today it has been fixed….

    check out….

    Thanks for visiting my site…

  2. #
    Rahul Bansal on February 27, 2008

    @TechPavan

    Thats good… :-)

    They might be reading our blog… :D

Leave a Comment

 Name (Required)
 E-mail (Required)
 Website

Comment:

  OR Use forum if posting unrelated to this topic.
[Note: All comments will be moderated as per our comments policy.]

Subscribe without commenting