Get a Pentest and security assessment of your IT network.

Cyber Security

PayPal Removes “Magic Word” from OAuth Authentication Procedure

Adobe security engineer Antonio Sanso discovered the flaw over the summer and worked with PayPal since September to fix the issue. The problem was found in the “redirect_uri”” parameter included in server requests exchanged during the OAuth authentication procedure. PayPal fixed the flaw on November 7

Source: Sanso went public with details on his blog. He said that depending on the scope of the scope (permission) the attacker could have had full access to customer accounts.”

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security