Robert Hansen, also known as RSnake, a founder of security consultancy SecTheory states "The attacker can forcibly install Google Gadgets; they can read the victim's search history once a malicious gadget has been installed in some specific circumstances; they can attack other Google Gadgets; they can phish usernames and passwords from victims, and so on. Really, the sky is the limit, once the browser is under the control of an attacker. And that point is exacerbated by the fact that people trust Google be a trustworthy domain, making the attacks even easier." Those most at risk - those who use Google and specifically Gmail. read more » DiscussBury