3 ms·
Hacker says security flaw let him access any Facebook profile
- sktrdie 14y agoNo proof of the exploit?
- delroth 14y agoFacebook acknowledged it and the researcher who found the vulnerability got a bounty from FB.
- xyzzy123 14y agoYou might be interested in Nir's discussion of the bug: http://www.nirgoldshlager.com/2013/02/how-i-hacked-facebook-oauth-to-get-full.html http://www.nirgoldshlager.com/2013/02/how-i-hacked-facebook-...
- judofyr 14y agoFacebook's OAuth2 implementation is so broken. Homakov found a X-XSS-Protection-related issue: http://homakov.blogspot.no/2013/02/hacking-facebook-with-oauth2-and-chrome.html http://homakov.blogspot.no/2013/02/hacking-facebook-with-oau.... After reading Homakov's and Nir's discussions I started looking for some bugs myself. And guess what? ~10 hours later I found another access_token-stealing exploit that has the same implications as Nir's exploit (although mine doesn't work in all browsers). Reported it 2 days ago. Wouldn't surprise me if there's more bugs/exploits to be discovered :(
- RobertHoudin 14y agoDid Facebook reward you with a bounty too? If so, out of curiosity, would you mind telling me how much?
- itsnotvalid 14y agoAnd since Homakov gave quite a detailed description of the class of bugs, it would be quite dangerous to use a browser with an active session to facebook now.