产品展示
  • 沃尔沃xc60 xc90 s90/60 v90内饰改装镶钻一键启动旋钮盖汽车配件
  • 本田URV冠道门槛条改装内饰UR-V车贴配件汽车迎宾踏板防刮踩踏贴
  • 2021款rav4荣放威兰达尾门板饰条后杠护板贴片后备箱亮条配件改装
  • 大功率电瓶充电器12V24V汽车货车伏轿车工程车大电瓶专用充电机器
  • 专用12-16款本田CRV保险杠CRV前后保险杠护杠17-20款CRV改装配件
联系方式

邮箱:[email protected]

电话:020-123456789

传真:020-123456789

汽车音响

A bug left your Microsoft account wide open to complete takeover

2024-10-18 22:25:21      点击:184

Bug bounty hunter Sahad Nk recently uncovered a series of vulnerabilities that left Microsoft users’ accounts — from your Office documents to your Outlook emails — susceptible to hacking.

While working as a security researcher with cybersecurity site SafetyDetective, Nk discovered that he was able to take over the Microsoft subdomain, http://success.office.com, because it wasn’t properly configured. This allowed the bug hunter to set up an Azure web app that pointed to the domain’s CNAME record, which maps domain aliases and subdomains to the main domain. By doing this, Nk not only takes control of the subdomain, but also receives any and all data sent to it.

This is where the second major vulnerability comes into play.

Mashable Light SpeedWant more out-of-this world tech, space and science stories?Sign up for Mashable's weekly Light Speed newsletter.By signing up you agree to our Terms of Use and Privacy Policy.Thanks for signing up!
SEE ALSO:Microsoft’s redesigned Office icons showcase the future of the software suite

Microsoft Office, Outlook, Store, and Sway apps send authenticated login tokens to the http://success.office.comsubdomain. When a user logs in to Microsoft Live, login.live.com, the login token would leak over to the server controlled by Nk. He would then just have to send over an email to the user asking them to click a link, which would provide Nk with a valid session token — a way to log in to the user’s account without even needing their username or password. And, because Nk has access on Microsoft’s side, that link would come in the form of a login.live.com URL, bypassing phishing detection and even the savviest of internet users.

According to SafetyDetective, the issues were reported to Microsoft in June. They were fixed just last month, in November.


Featured Video For You
How to concoct (and remember!) an insanely secure password — Clarification Please

‘S. Korea has own solution to denuclearization’
快速走出阴影 学校全面复课