Facebook vulnerability based on tokens 10-02-2018, 08:43 AM
#1
Greetings, yet another Facebook vulnerability was discovered that may have big consequences. This vulnerability is based on leaking tokens of the users, thus being able to access private messages, credit card information, etc. This is a a chain of 3 vulnerabilities explained in the articles like:
I find this vulnerability pretty interesting because it's acting like some kind of "worm".
For more information you can read the full article.
Quote:
- Experts noticed that the “View As” allows displaying the profile as a read-only interface. but the platform fails to validate the content submitted through text box that allows people to wish happy birthday to their friends(this is the first bug). The experts discovered that it is possible to post a video through this field.
- The second issue is related to the fact that the video uploader generated an access token that had the permissions of the Facebook mobile app when posting a video in the text box.
- The third bug is that the token generated was not for the user who had been using “View As” but for the one whose profile was being viewed, this means that attackers could obtain the token from the page’s HTML code and use it to take over a targeted user’s account.
I find this vulnerability pretty interesting because it's acting like some kind of "worm".
For more information you can read the full article.








![[+]](https://sinister.li/images/modern/collapse_collapsed.png)












(