Philipp Lenssen spotted a post by Brandon at GeekCondition that explains the general idea behind an attack that can be used to set up filters in your Gmail account without your knowledge. It’s important to be aware of these kind of things so you can better protect yourself.
In order for this to work, someone has to first steal your Gmail cookie — bad guys are always looking for new ways to do this, and according to Brandon, there is at least one (but probably several) outstanding methods that can be used to get your cookie.
As long as you practice safe browsing techniques, the risk of your Gmail account being compromised is significantly lower. Here are some things you can do to protect yourself.
It’s important to note that these problems aren’t limited to Gmail — any website that uses cookies to authenticate requests can be taken advantage of the same way. Taking the security measures above will help protect all your online accounts too.