"Google Accounts at Risk: OAuth Flaws and Malware Enable Unauthorized Access"

1 min read
Source: TechSpot
"Google Accounts at Risk: OAuth Flaws and Malware Enable Unauthorized Access"
Photo: TechSpot
TL;DR Summary

A vulnerability in Google's OAuth protocol, named "MultiLogin," was exploited by a malware developer, allowing cyber-criminals to hijack Google accounts by synchronizing them across services. The exploit enables persistent access to Google services even after a password reset, by generating valid session cookies. Google has acknowledged the issue and taken steps to secure affected accounts, advising users to log out to invalidate stolen tokens and recommending the use of Enhanced Safe Browsing in Chrome for additional protection.

Share this article

Reading Insights

Total Reads

0

Unique Readers

0

Time Saved

2 min

vs 2 min read

Condensed

80%

38677 words

Want the full story? Read the original article

Read on TechSpot