BREAKING: Facebook admits security breach affected 50million accounts – attackers stole Facebook access tokens that they "could then use to take over people's accounts"
FACEBOOK AND ZUCKERBERG ARE A MESS OF A BUSINESS
Hacker
claims will live-stream deleting Zuckerberg FACEBOOK profile...
ANOTHER
breach allowed hackers to control 50,000,000 accounts...
NOBODY IS SAFE ON FACEBOOK
The issue affected nearly 50 million accounts, which would require users to re-enter their passwords. The security issue was discovered by the company’s engineers on Tuesday. Hackers have been apparently able to fetch the so-called “access tokens” – digital keys, which allow a user to stay logged into Facebook and to not re-enter their passwords each time they use the application.
“Our investigation is still in its early stages. But it's clear that attackers exploited a vulnerability in Facebook's code that impacted "View As", a feature that lets people see what their own profile looks like to someone else,” the tech giant said in a statement.
The vulnerability has been already fixed, according to Facebook, and the “View As” feature has been temporarily disabled.
“This attack exploited the complex interaction of multiple issues in our code. It stemmed from a change we made to our video uploading feature in July 2017, which impacted "View As." The attackers not only needed to find this vulnerability and use it to get an access token, they then had to pivot from that account to others to steal more tokens,” Facebook stated.
Damage done by the attack is yet to be evaluated, it remains unclear whether the affected accounts “were misused or any information accessed.” Source of the attack and who was behind it also remain unidentified, according to Facebook.