Get a Pentest and security assessment of your IT network.

News

Short Password Reset code vulnerability allows hackers to brute-force many websites

Indian hacker reported a Short Password Reset code vulnerability that could allow attackers to brute-force many high profile websites not protected by CAPTCHA verification system. The hacker used a Firefox Browser equipped with the Fireforce add-on, a very simple a Firefox extension designed to perform brute force attacks on GET and POST forms. The technique proposed by him targets the unsecure password reset process used by many websites, where the web application used to send a code to the users mobile or email for authenticity verification.”]

Source: https://securityaffairs.co/wordpress/17148/hacking/short-password-reset-code-vulnerability-allows-hackers-to-brute-force-many-websites.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

1 day attack with DDoS booter costs $60 causing $720k in damageSecurity Affairs

News

NSA-linked Cisco exploit poses bigger threat than previously thought