Get a Pentest and security assessment of your IT network.

News

Twitter OAuth feature can be abused to hijack accounts, researcher says

A feature in the Twitter API (application programming interface) can be abused by attackers to launch credible social engineering attacks that would give them a high chance of hijacking user accounts. The issue has to do with how Twitter uses the OAuth standard to authorize third-party apps, including desktop or mobile Twitter clients, to interact with user accounts through its API. An attacker could use such tokens to post new tweets on behalf of the compromised users, read their private messages, modify the location displayed in tweets, and more.”]

Source: https://www.csoonline.com/article/2133203/privacy-twitter-oauth-feature-can-be-abused-to-hijack-accounts-researcher-says.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Take note, next week update Adobe Reader and Acrobat to fix critical flaws

News

Linux bug leaves 1.4 billion Android users vulnerable to hijacking attacks