Discord Server Red Security Twitter Donation to Red Security Red Security Youtube Channel Red Security Tumblr Profile
Login or Register to Hide ads and Accessing all features on the forum

News 

TikTok Patches Critical Account Takeover Bugs

2 Replies, 1484 Views

In The Name Of Allah
Al-Salam Alekum

[Image: ?u=https%3A%2F%2Ftse1.mm.bing.net%2Fth%3...%3DApi&f=1]

Well, looks like nothing is safe nowadays, TikTok has been forced to patch several critical vulnerabilities which may have allowed hackers to hijack user accounts and steal personal data.


Quote:Check Point also discovered a cross-site scripting (XSS) vulnerability in an ads subdomain of the main TikTok site; specifically in a help center section. This could allow attackers to inject malicious JavaScript into the site to harvest personal user account info, the firm warned.

Quote:This could allow attackers able to find out a victim’s phone number to send them a custom malicious link, enabling them to take over an account and delete videos, post content and make private videos public.

The Source



Wa Salam Alekum
Rs
* Thankful to Allah *
Kurdy

Messages In This Thread
TikTok Patches Critical Account Takeover Bugs - by Mr.Kurd - 01-12-2020, 07:55 AM

Possibly Related Threads…
Thread Author Replies Views Last Post
Star News Update Windows 10 to patch critical vulnerability in Microsoft store games News 0 944 11-06-2020, 04:22 AM
Last Post: News
Star News APT Actors Chaining Vulnerabilities Against SLTT, Critical Infrastructure, and Elect News 0 975 10-10-2020, 07:06 AM
Last Post: News
Star News Four More Bugs Patched in Microsoft’s Azure Sphere IoT Platform News 0 923 08-26-2020, 03:41 AM
Last Post: News
Exclamation News Does TikTok Really Pose a Risk to US National Security? Mr.Kurd 0 963 07-25-2020, 10:13 PM
Last Post: Mr.Kurd
Thumbs Up News Citrix Bugs Allow Unauthenticated Code Injection, Data Theft Mr.Kurd 1 1,344 07-15-2020, 12:28 AM
Last Post: EthelCrife
Exclamation News $100,000 Bounty Apple Zero-day Bug in “Sign in with Apple” Let Hackers Take Takeover Mr.Kurd 0 1,229 06-01-2020, 07:42 AM
Last Post: Mr.Kurd
Smile News Critical Vulnerability In Bisq Crypto Exchange Exploited For Some Users Mr.Kurd 0 1,174 04-10-2020, 02:46 PM
Last Post: Mr.Kurd
Sad News Critical RCE Bug in WordPress Plugin Let Hackers Gain Admin Access on 200,000 Website Mr.Kurd 0 1,058 04-01-2020, 11:19 AM
Last Post: Mr.Kurd
Question News Critical Remote Code Execution Bug in Linux Based OpenWrt OS Affects Millions of Netw Mr.Kurd 0 1,182 03-25-2020, 08:11 AM
Last Post: Mr.Kurd
Thumbs Down News Slack Vulnerability Allowing Account Takeovers Mr.Kurd 0 1,050 03-17-2020, 08:11 PM
Last Post: Mr.Kurd



Users browsing this thread: 1 Guest(s)