Get a Pentest and security assessment of your IT network.

Cyber Security

PayPal Removes “Magic Word” from OAuth Authentication Procedure

Adobe security engineer Antonio Sanso discovered the flaw over the summer and worked with PayPal since September to fix the issue. The problem was found in the “redirect_uri”” parameter included in server requests exchanged during the OAuth authentication procedure. PayPal fixed the flaw on November 7

Source: Sanso went public with details on his blog. He said that depending on the scope of the scope (permission) the attacker could have had full access to customer accounts.”

Related posts
Cyber Security

Zip Codes & PII: Are They Personal Data?

Cyber Security

Zero-Day Vulnerabilities: User Defence Guide

Cyber Security

Zero Knowledge Voting with Trusted Server

Cyber Security

ZeroNet: 51% Attack Risks & Mitigation