Get a Pentest and security assessment of your IT network.

Cyber Security

Short Password Reset code vulnerability allows hackers to brute-force many websites

Hackers are hijacking Mobile recharge and Free SMS service related websites. Hackers target unsecure password reset process used by many websites. Around 40% websites adopts password reset code composed of numbers and of some fixed length, typically having a length less than 5 digits. The hacker used a Firefox Browser equipped with the Fireforce add-on, a very simple a Firefox extension designed to perform brute force attacks on GET and POST forms. After a successfully hack it is possible to reset the password of the victim, the brute force attack is not so complicated.

Source: https://thehackernews.com/2013/08/short-password-reset-code-vulnerability.html

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security