| The Hacker News |
| The Hacker News has been internationally recognized as a leading news source dedicated to promoting awareness for security experts and hackers // via fulltextrssfeed.com |
Hacking Facebook to delete any account; Facebook again refuses to pay Bounty
9/5/2013 2:15:00 PM
Ehraz Ahmed, an independent Security Researcher claimed that he reported a critical vulnerability to the Facebook Security team, which allows the attacker to delete any account from Facebook.
Video Demonstration of Exploit:
Vulnerable URL:
Where selected_users[0] and __user parameters are vulnerable to run exploit. Using the flaw hacker was also able to delete Facebook CEO Mark Zuckerberg's profile. For now the vulnerability is fixed by the Facebook team. But Should these Bug Hunters now stop reporting to vendors and start selling exploits again in underground hacking forums ?https://www.facebook.com/ajax/whitehat/delete_test_users.php? fb_dtsg=AQA1E-WE&selected_users[0]=[Victems Profile ID]&__user=[Attackers Profile ID]&__a=1
Just four days before Facebook fixed another flaw that allowed hackers to delete photos of any user.
Latest Hacking News Updates
Author details
You are receiving this email because you subscribed to this feed at feedmyinbox.com
If you no longer wish to receive these emails, you can unsubscribe from this feed, or manage all your subscriptions


0 comments:
Post a Comment