Live data from Hacker News

How you can get hacked if you are using iPad/Safari/gmail

blog.secpanel.com

1–10 of 17 posts

Re: How you can get hacked if you are using iPad/Safari/gmail

#3
post #2

I guess all this article is trying to say is to use https://google.com/ in iPad. Is there anything else I'm missing here?

The google search tab on the right top in Safari/iPad is what a user tends to search in, instead of opening up a new browser tab. This opens up http://google.com, which is the issue.

Re: How you can get hacked if you are using iPad/Safari/gmail

#5

Can the session information sent to non-secure Google sites be used on Gmail?

Yes. When one is logged in as a gmail user, any google search is done as that user. Therefore the requests will carry session information just as if one were using gmail with http.

Re: How you can get hacked if you are using iPad/Safari/gmail

#6
post #2

I guess all this article is trying to say is to use https://google.com/ in iPad. Is there anything else I'm missing here?

The google search tab on the right top in Safari/iPad is what a user tends to search in, instead of opening up a new browser tab. This opens up http://google.com , which is the issue.

Is that the workaround? After viewing google on https, close the tab and start a new one for searching?

Or should I always avoid http://google.com while logged into a google property on untrusted networks?

Post reply on HN