Get a Pentest and security assessment of your IT network.

Cyber Security

GitHub fixes bug causing users to log into other accounts

Last night GitHub logged out many users by invalidating their GitHub.com sessions to protect user accounts against a potentially serious security vulnerability. The vulnerability stemmed from a rare race condition vulnerability in which a GitHub user’s login session was misrouted to the web browser of another logged-in user, giving the latter an authenticated session cookie of and access to the former user’s account. The company states that the underlying bug was present for a cumulative period of under two weeks at certain points in time between February 8th and March 5th.

Source: https://www.bleepingcomputer.com/news/security/github-fixes-bug-causing-users-to-log-into-other-accounts/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security