My apologies for flogging my employer's product, but I enough people have asked me "how can I protect my gmail account" that I feel this is worth it.
http://www.informationweek.com/news/security/vulnerabilities/showArticle.jhtml?articleID=229216897
Google has enabled 2-factor authentication for GMail. I highly recommend you enable this. Attacks on gmail accounts (and all accounts) are increasing in frequency.
Not true, still not enabled for my account...