Get a Pentest and security assessment of your IT network.

News

Black Hat security conference trims insecure features from its mobile app

Black Hat has disabled features of its mobile app because attackers could have logged in as legitimate attendees, posted messages in their names and spied on the messages they sent. The problem was discovered by mobile security vendor Lookout who detail the problem in a blog that says the method of registration and password resets were flawed. Lookout says the problems stemmed from the fact that new accounts were created without email verification, and that even when users reset their passwords, authentication tokens werent revoked, so attackers logged in already could stay logged in.”]

Source: https://www.csoonline.com/article/3102179/black-hat-security-conference-trims-insecure-features-from-its-mobile-app.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Thousands of Magento websites compromised to serve malware

News

Office 365 Secure Score: An Introduction