Lee web Design

  • Home
  • Products
    • Furniture & Accessories
    • Garden Supply
    • Hardware & Materials
    • Home Tech
  • Designer Collection
  • Typography
  • Accessories
  • Web Design
  • Lifestyle
  • Latest Internet News

Facebook Fixes Flaw That Could’ve Let Anyone Access Your Account

March 14, 2016 , Sristy , Comments Off on Facebook Fixes Flaw That Could’ve Let Anyone Access Your Account

Facebook Fixes Flaw That Could've Let Anyone Access Your Account

Facebook has awarded a sum of $15,000 (roughly Rs. 1,010,000) to an India-born security researcher. Anand Prakash received the bug bounty from Facebook after disclosing a vulnerability in the social juggernaut’s website that enabled an attacker to gain access to anyone’s account.

Prakash discovered a vulnerability on Facebook website that allowed him to change the user account password for any account. He reported the vulnerability to Facebook last month and the company has since patched it. Prakash has now shed light on the vulnerability, and also demonstrated it in works on a video.

The security hole resided in company’s developer portal, beta.facebook.com, which is designed for developers to perform tests before rollout to the general public. Facebook sends users a 6-digit code over email or text message upon password reset request. To prevent abuse or potential ill intents, Facebook allows only a certain number of attempts. Turns out, over at the beta website, a user could make any number of guesses.

In a blog post, Prakash wrote that he utilised Burp Suite, a popular testing tool. Prakash noted that because it’s only a six-digit number, and brute forcing password is possible, it was not impossible to crack into someone’s account, guessing the reset password.

“[…] I looked out for the same issue on beta.facebook.com and mbasic.beta.facebook.com and interestingly rate limiting was missing on forgot password endpoints,” he wrote in a blog post. “I tried to takeover my account ( as per Facebook’s policy you should not do any harm on any other users account) and was successful in setting new password for my account. I could then use the same password to login in the account.”

Download the Gadgets 360 app for Android and iOS to stay up to date with the latest tech news, product reviews, and exclusive deals on the popular mobiles.

Tags: Bug Bounty, Facebook, Security, Social, Social Network, Vulnerability
[“source-Gadgets”]

Share this:

  • Click to share on Facebook (Opens in new window) Facebook
  • Click to share on LinkedIn (Opens in new window) LinkedIn
  • Click to share on Reddit (Opens in new window) Reddit
  • Click to share on X (Opens in new window) X
  • Click to share on Tumblr (Opens in new window) Tumblr
  • Click to share on Pinterest (Opens in new window) Pinterest
  • Click to share on WhatsApp (Opens in new window) WhatsApp

Posted in Latest Internet News. Tagged as Access, Account, Anyone, Could've, Facebook, Fixes, Flaw, Let, that, Your

Next Post →

Women Spending More Time on Search, Says Google India

← Previous Post

Google Sides With Facebook Amid Data-Dominance Investigation

Author

Sristy

Related Posts

Fast Internet providers in Illinois: Associating People group and Engaging Lives

September 9, 2024 , admin , Comment Closed

Work Well, Do Good: Empowering Your Team with Smart and Sustainable Supplies

June 8, 2024 , admin , Comment Closed

Top 5 Digital Marketing Tips for Startups

June 6, 2022 , admin , Comment Closed

Get Newsletter Daily

Trending News

international surroundings Day 2016: 5 of Your preferred foods anticipated to go Extinct

June 7, 2016 , Sristy, Comment Closed

30 Tips for Building Your First Business Website

December 19, 2016 , Sristy, Comment Closed

Samsung Galaxy Note 7 Recall: Restart of Sales Delayed by 3 Days in South Korea

October 16, 2016 , Sristy, Comment Closed

EXCLUSIVE-Facebook says hackers in Pakistan targeted Afghan users amid government collapse

November 17, 2021 , Loknath Das, Comment Closed

You Need to Read This Before Hiring a Web Designer

December 19, 2016 , Sristy, Comment Closed

Is Your Web Design Failing Your Video?

April 12, 2016 , Sristy, Comment Closed

‘Part of $100 Million Hacked From Bangladesh Bank Recovered’

March 22, 2016 , Sristy, Comment Closed

Is a Commercial Theme and DIY Website Right for You?

December 4, 2016 , Sristy, Comment Closed

Xiaomi’s Mi Mousepad, Mi Steel Mousepad Launched in India

July 6, 2016 , Sristy, Comment Closed

Find Us !

Find Us !

Follow me on Twitter

My Tweets

Latest Pins on Pinterest

  • Looking for creative dinner ideas that wow your family or guests? Discover the rich flavors of Traditional Stracotto Italian Pot Roast—an Italian classic slow-cooked with beef, red wine, and fresh herbs for melt-in-your-mouth tenderness. This elegant, hearty dish is perfect for cozy nights or special gatherings. 📌 Try this today or save it for later! ➡️ Follow @TopCreativeRecipes for...

  • These lemon tartlets are the perfect way to cool down this summer! With a smooth lemon curd filling and mini tart crust, they’re a tangy bite of sweetness that’s sure to impress. Try them for your next party or special occasion!

  • Follow Me on Pinterest
  • Home
  • Privacy Policy
  • Contact Us!

© Lee web Design 2025. Powered by WordPress & FancyThemes