27 Jun 2013

Researcher nets $20K for finding serious Facebook flaw

Author: lorenreid24 | Filed under: About

A U.K.-based researcher has netted US$20,000 for spotting a very serious flaw in Facebook that could have allowed an attacker to take over anyone’s account with minimal effort. The flaw was fixed by Facebook about a month ago, wrote Jack Whitten, an application security engineer who posted a post-mortem on his blog . Whitten found it was possible to reset the password of anyone’s account by exploiting an error in how Facebook lets users link their mobile phone to their account for purposes such as receiving updates over SMS.

See more here:
Researcher nets $20K for finding serious Facebook flaw

Tags: , , , , , , , ,

Leave a Reply