Account Takeover in Facebook mobile app due to usage of cryptographically unsecure random number generator and XSS in Facebook JS SDK ($66,000)
https://t.co/XmqTaNwmds
I recently developed and posted about a technique called "First sequence sync", expanding @albinowax's single packet attack.
This technique allowed me to send 10,000 requests in 166ms, which breaks the packet size limitation of the single packet attack.
https://t.co/puM7hZWIlE
Solved! Chrome debugger was enabled and allowed access via http://localhost:9222/json. This allowed exfiltrating data from other users whosoever was hitting this headless chrome browser - more info here - https://t.co/yBCTp5p9LE
Thanks everyone for the tips :)
Sometimes going back to old old versions is not a waste of time.
A bug was found in 2022.
Title : from username all contact points associated with that account were disclosed in the invalid login error message
https://t.co/dZvX0twnXO