Source |
InformationSecurityBuzzNews |
Identifiant |
1322107 |
Date de publication |
2019-09-12 13:27:01 (vue: 2019-09-12 16:03:22) |
Titre |
Uber Account Takeover Vulnerability Discovered |
Texte |
According to this link, https://www.forbes.com/sites/daveywinder/2019/09/12/uber-confirms-account-takeover-vulnerability-found-by-forbes-30-under-30-honoree/#16085ecf9b87, a security vulnerability has been discovered that could allow attackers to compromise and control any Uber account. The vulnerability could be exploited to track a user's location and take rides from their account via an application programming interface (API) request This involved first acquiring the user universally unique identifier (UUID) of …
The ISBuzz Post: This Post Uber Account Takeover Vulnerability Discovered |
Notes |
|
Envoyé |
Oui |
Condensat |
according account acquiring allow any api appeared application attackers been buzz com/sites/daveywinder/2019/09/12/uber compromise confirms control could discovered exploited first forbes found from has honoree/#16085ecf9b87 identifier information interface involved isbuzz link location post post: programming request rides security take takeover track uber under unique universally user uuid vulnerability https://www |
Tags |
Vulnerability
|
Stories |
Uber
|
Move |
|