dslreports logo
 
    All Forums Hot Topics Gallery
spc
uniqs
464
85160670 (banned)
"If U know neither the enemy nor yoursel
join:2013-09-17
Edmonton, AB

85160670 (banned)

Member

Squashed bug opened EVERY PayPal account to hijacking

Whatch out ...."PayPal has plugged a huge hole that exposed every account to hijacking.

The cross-site request forgery (CSRF) flaw reported by Egyptian researcher Yassar H Ali allowed attackers access to any PayPal account of their choosing if they were capable of convincing a target to click a link." [ »www.theregister.co.uk/20 ··· _bounty/ ]

kv5e
Ride Free
Premium Member
join:2001-12-04
Mesquite, TX

kv5e

Premium Member

All the more reason to use two part authentication with financials!

craig