The Register® — Biting the hand that feeds IT

Feeds

Facebook fixes Hotmail reset bug

  • alert
  • print
  • tweet

Mystery flaw is repaired

Free whitepaper – Enabling Datacenter and Cloud Service Management for Mid-Tier Enterprises

Facebook has plugged a password reset glitch involving users who linked their social network profiles to Hotmail webmail address.

The flaw, discovered by Turkish security researcher Serkan Gencel, also created a possible mechanism for cyber-criminals to lift Facebook passwords linked to Hotmail accounts. Gencel privately informed Facebook of the flaw prior to going public with his discovery, initially in the Turkish media (story here).

The mechanism of the vulnerability, even now, remains unclear. Gencel isn't spilling the beans and Facebook would only say that it had fixed the flaw following notification from a Turkish security researcher. ®

Free whitepaper – Enabling Datacenter and Cloud Service Management for Mid-Tier Enterprises

Sign up, sign up for The Register's weekly IT security newsletter - click here