Get a Pentest and security assessment of your IT network.

News

Skype blocks password resets after trivial account hijacking flaw made public

Skype has disabled the account password reset option on its website following reports that the feature can be abused to hijack Skype accounts if the attackers know the email addresses associated with them. It’s not clear if the issue was the result of a design logic flaw or a bug in Skype’s client or website. The Skype website allows logged in users to associate a second email address with their accounts and delete the old one. The attacker could have created a new account using an email address that’s already associated with an existing one.”]

Source: https://www.csoonline.com/article/2132547/skype-blocks-password-resets-after-trivial-account-hijacking-flaw-made-public.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

BlackEnergy exploits recently fixed flaws in Siemens WinCC

News

Google Chrome will block code injection from third-party software within 14 months