info
discussion
exploit
solution
references
Google Gears WorkerPool API 'allowCrossOrigin()' Same Origin Policy Violation Vulnerability
References:
Breaking Google Gears' Cross-Origin Communication Model
(Yair Amit)
Gears API History
(Google)
Gears Homepage
(Google)
Privacy Statement
Copyright 2010, SecurityFocus