Friday, 24 March, 2023
Meta’s Account Center came with a 2FA-defeating bug

<p>A security researcher from Nepal discovered a bug in Meta that could have allowed hackers to bypass two-factor authentication. There was no upper limit to the number of times someone could brute force an SMS-based code. A successful attack would still result in Meta sending a message to the victim's email saying their account had been disabled. Gtm Mänôz, the security researcher who discovered a bug in Meta's login system, has been awarded $27,200 for reporting it. </p>
Read full story at Bean Start
Tags: