Create an account


Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
News - 50 million Facebook accounts hit by account hijacking security exploit

#1
50 million Facebook accounts hit by account hijacking security exploit

<div style="margin: 5px 5% 10px 5%;"><img src="http://www.sickgaming.net/blog/wp-content/uploads/2018/09/50-million-facebook-accounts-hit-by-account-hijacking-security-exploit.jpg" width="200" height="200" title="" alt="" /></div><div><p>Facebook has learned of a security vulnerability that has opened up millions of its users to account theft over the past year, though the company notes it is still investigating any impact the exploit has had to date.</p>
<p>While the exploit wasn’t related to Facebook’s game platform itself, the issue potentially affects 50 million Facebook accounts, making it an issue developers using the platform should be well aware of.</p>
<p>The issue itself is detailed in a <a href="https://newsroom.fb.com/news/2018/09/security-update/">blog post shared by Facebook</a> and has since been fixed and reported to law enforcement. While the cause for the vulnerability seems to, by Facebook’s reports, be the result of several different small issues in the platform’s code, the core issue itself involved the “view as” feature that is intended to let a user see what information they’re showing other Facebook users. </p>
<p>However, an issue with “View As” instead let attackers take access tokens from Facebook accounts and allow them to hijack those accounts themselves by using the tokens to log in as an exploited user. </p>
<p>Facebook says that it has now reset the access tokens of the nearly 50 million accounts it knows to be affected, and has reset the access tokens for an additional 40 million accounts that aren’t known victims but had “View As” activity in the past year. Any affected users will have to log back into Facebook, both on the site and any third-party apps or locations using Facebook login, and have been sent a notice about the issue.</p>
<p>“Since we’ve only just started our investigation, we have yet to determine whether these accounts were misused or any information accessed,” reports Facebook. “We also don’t know who’s behind these attacks or where they’re based. We’re working hard to better understand these details — and we <a href="https://newsroom.fb.com/news/2018/09/security-update/">will update this post</a> when we have more information, or if the facts change. In addition, if we find more affected accounts, we will immediately reset their access tokens.”</p>
</div>
Reply



Possibly Related Threads…
Thread Author Replies Views Last Post
  News - How To Move Your PSN Account To PS5 From PS4 xSicKxBot 0 691 11-08-2020, 08:06 PM
Last Post: xSicKxBot
  News - Among Us Players Are Playing As Security Guards xSicKxBot 0 836 10-20-2020, 10:47 PM
Last Post: xSicKxBot
  News - PSA: Apple Ending Sign-In Support For Fortnite, Epic Games Accounts xSicKxBot 0 801 09-09-2020, 11:35 PM
Last Post: xSicKxBot
  Get paid from your Google Account! Class Action settlement! Limited time, submit now! SickProdigy 0 842 08-22-2020, 01:05 AM
Last Post: SickProdigy
  News - Oculus plans to replace Oculus Accounts with Facebook Accounts xSicKxBot 0 727 08-21-2020, 11:08 AM
Last Post: xSicKxBot
  News - Microsoft is shutting down Mixer, redirecting its users to Facebook Gaming xSicKxBot 0 748 06-24-2020, 07:35 PM
Last Post: xSicKxBot
  News - Facebook prepares to wage war over release of Gaming app on iOS xSicKxBot 0 797 06-23-2020, 07:23 PM
Last Post: xSicKxBot
  News - Blog: A firsthand account of coronavirus’ impact on China’s game industry xSicKxBot 0 840 02-18-2020, 06:20 PM
Last Post: xSicKxBot
  News - MoviePass Reportedly Charging Bank Accounts Despite Closing Shop xSicKxBot 0 966 10-22-2019, 01:14 PM
Last Post: xSicKxBot
  News - Ubisoft puts kibosh on Assassin’s Creed XP-farming exploit xSicKxBot 0 1,042 07-16-2019, 12:25 AM
Last Post: xSicKxBot

Forum Jump:


Users browsing this thread:
1 Guest(s)

Forum software by © MyBB Theme © iAndrew 2016