Saturday , July 27 2024
Samip Aryal

0/1 click Facebook account takeover; Nepalis talent rewarded

Meta ranked Nepal’s cyber security researcher Samip Aryal first in the White Hack (Hall of Fame) for finding a vulnerability that could hack accounts with one click. This happened on Friday.

                                            Screenshot from Samip Aryal facebook post

Samip Aryal informed a Nepali media outlet about discovering a vulnerability in Facebook that could allow for an ‘account takeover.’ According to Aryal, the vulnerability could be exploited to take control of any user’s account with minimal effort.

Google fixes Chrome Password Manager bug hiding credentials

Google fixed a bug in Chrome's Password Manager that caused user credentials to vanish temporarily. A problem with Google Chrome's...
Read More
Google fixes Chrome Password Manager bug hiding credentials

India Confirms BSNL’s Data Breach, formed committee to investigate

India’s Communications Minister Chandra Sekhar Pemmasani confirmed a breach at the state-owned telecom operator BSNL on May 20 during a...
Read More
India Confirms BSNL’s Data Breach, formed committee to investigate

Malware Attacks Increase 30% in First Half of 2024

Malware based threats increased by 30% in the first half of 2024 compared to the same period in 2023, according...
Read More
Malware Attacks Increase 30% in First Half of 2024

New DNS Vulnerability “TuDoor” Threatens Internet Security

A new critical vulnerability in the Domain Name System (DNS) has been found. This vulnerability allows a specialized attack called...
Read More
New DNS Vulnerability “TuDoor” Threatens Internet Security

Acronis Urged Users to Patch Vulnerability

A serious vulnerability, CVE-2023-45249 (CVSS 9.8), has been found in Acronis Cyber Infrastructure (ACI), a widely used software-defined infrastructure solution...
Read More
Acronis Urged Users to Patch Vulnerability

OpenAI to test search engine called SearchGPT

OpenAI is testing a new search engine "SearchGPT" using generative artificial intelligence to challenge Google's dominance in the online search...
Read More
OpenAI to test search engine called SearchGPT

CISA Unveils advisories for Two Industrial Control Systems

CISA released two advisories about security issues for Industrial Control Systems (ICS) on July 25, 2024. These advisories offer important...
Read More
CISA Unveils advisories for Two Industrial Control Systems

Researchers unveil ConfusedFunction Vulnerability in Google Cloud Platform

Tenable security researchers found a vulnerability in Google Cloud Platform's Cloud Functions service that could allow an attacker to access...
Read More
Researchers unveil ConfusedFunction Vulnerability in Google Cloud Platform

BD CIRT published advisory on Web Application and Database Security

BDG e-GOV CIRT's Cyber Threat Intelligence Unit has noticed a concerning increase in cyber-attacks against web applications and database servers...
Read More
BD CIRT published advisory on Web Application and Database Security

GitLab fixed six security flaws and recommends updating shortly

GitLab released a security update today to fix six vulnerabilities in its software. Although none of the flaws are critical,...
Read More
GitLab fixed six security flaws and recommends updating shortly

While he is currently ranked as one of the top hackers, there may be someone with a higher score in that position. Aryal mentioned that for now, 2024 is ranked first. Previously, Aryal reported security vulnerabilities to Facebook and was ranked 27th.

Facebook whitehat list

Finding this type of security vulnerability is a top priority for cyber security researchers. Aryal also made it a priority.

“This is Facebook’s Priority Based Vulnerability (priority security weakness),” he said. Earlier I looked at two factor authentication bypass. That is also a priority. This is definitely the highest priority.”

For discovering this weakness, Facebook has honored him in the Hall of Fame and given him a monetary reward.

Aryal found a weakness that could take over anyone’s account, but accounts with two-factor authentication cannot be taken over. OTP is needed to access these accounts, and it cannot be accessed because it goes to phone or email. Aryal recommends enabling two-factor authentication for added Facebook account security.

Check Also

diagram

Researchers unveil ConfusedFunction Vulnerability in Google Cloud Platform

Tenable security researchers found a vulnerability in Google Cloud Platform’s Cloud Functions service that could …

Leave a Reply

Your email address will not be published. Required fields are marked *