Skip to content
Better HN
Top
New
Best
Ask
Show
Jobs
Search
⌘K
Researchers took over Booking.com accounts using a legitimate Facebook link | Better HN
Researchers took over Booking.com accounts using a legitimate Facebook link
4 points
aviCC
3y ago
1 comments
Share
The vulnerability exists in OAuth (social sign-in), used by almost every website today. If you are unfamiliar with OAuth, the post (in the first comment) explains it step-by-step with detailed diagrams.
1 comments
default
newest
oldest
aviCC
OP
3y ago
https://salt.security/blog/traveling-with-oauth-account-take...
Video:
https://youtu.be/IK_AV1UFS-0
j
/
k
navigate · click thread line to collapse