Diamond Member ThaHaka 0 Posted January 14 Diamond Member Share Posted January 14 This is the hidden content, please Sign In or Sign Up New research has pulled back the curtain on a "deficiency" in This is the hidden content, please Sign In or Sign Up 's "Sign in with This is the hidden content, please Sign In or Sign Up " authentication flow that exploits a quirk in domain ownership to gain access to sensitive data. " This is the hidden content, please Sign In or Sign Up 's OAuth login doesn't protect against someone purchasing a failed startup's domain and using it to re-create email accounts for former employees," Truffle Security co-founder and CEO Dylan Ayrey said This is the hidden content, please Sign In or Sign Up Link to comment https://hopzone.eu/forums/topic/192574-h4ckn3wsgoogle-oauth-vulnerability-exposes-millions-via-failed-startup-domains/ Share on other sites More sharing options...
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now