cancel
Showing results for 
Search instead for 
Did you mean: 

Serious security flaw in OAuth, OpenID discovered

TORPC
Grafter
Posts: 5,163
Registered: 08-12-2013

Serious security flaw in OAuth, OpenID discovered

[quote=http://www.cnet.com/uk/news/serious-security-flaw-in-oauth-and-openid-discovered/?ttag=fbwl]Attackers can use the "Covert Redirect" vulnerability in both open-source log-in systems to steal your data and redirect you to unsafe sites.
Quote
Beware of links that ask you to log in through Facebook. The OAuth 2.0 and OpenID modules are vulnerable. iStockphoto
Following in the steps of the OpenSSL vulnerability Heartbleed, another major flaw has been found in popular open-source security software. This time, the holes have been found in the log-in tools OAuth and OpenID, used by many websites and tech titans including Google, Facebook, Microsoft, and LinkedIn, among others.
Wang Jing, a Ph.D. student at the Nanyang Technological University in Singapore, discovered that the serious vulnerability "Covert Redirect" flaw can masquerade as a log-in popup based on an affected site's domain. Covert Redirect is based on a well-known exploit parameter.
For example, someone clicking on a malicious phishing link will get a popup window in Facebook, asking them to authorize the app. Instead of using a fake domain name that's similar to trick users, the Covert Redirect flaw uses the real site address for authentication.