Dec. 29, 2023, 7:18 p.m. |

DataBreachToday.co.uk RSS Syndication www.databreachtoday.co.uk

Google OAuth2 Vulnerability Being Actively Abused by Attackers, Researchers Warn
A previously undiscovered critical exploit can allow threat actors to gain persistent, unauthorized access to Google services and connected accounts even after users have changed their passwords, cybersecurity researchers warn. They said the flaw enables hackers to manipulate the OAuth 2 protocol.

access accounts attackers connected critical cybersecurity exploit flaw google hackers hijacking info info-stealing malware malware oauth oauth2 passwords persistent protocol researchers services session session hijacking stealing threat threat actors unauthorized access vulnerability

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Cybersecurity Engineer

@ Booz Allen Hamilton | USA, VA, Arlington (1550 Crystal Dr Suite 300) non-client

Invoice Compliance Reviewer

@ AC Disaster Consulting | Fort Myers, Florida, United States - Remote

Technical Program Manager II - Compliance

@ Microsoft | Redmond, Washington, United States

Head of U.S. Threat Intelligence / Senior Manager for Threat Intelligence

@ Moonshot | Washington, District of Columbia, United States

Customer Engineer, Security, Public Sector

@ Google | Virginia, USA; Illinois, USA