Get a Pentest and security assessment of your IT network.

News

Researcher claims Microsoft CID exposed in plain text

Microsoft web applications expose visitors Microsoft Identifier (CID) in plain text. CID is used as part of the hostname for the location of user data for Outlook.com, OneDrive, and Microsofts account pages. The leakage of the Microsoft CID in clear text could allow threat actors to connect the company’s services to retrieve information on the targeted users. The disclosure of the CID makes each request visible to anyone that could monitor the DNS traffic. The CID could be used to access metadata from the Microsoft Live service, it is possible to access also information about when the account was created or last accessed time.”]

Source: https://securityaffairs.co/wordpress/40819/digital-id/microsoft-cid-exposed-plain-text.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Hacker Interviews Billy Rios

News

Attacker.NET : Server Management & Security, Website Malware Removal & Website Security