A new technique that PayPal has submitted for patent protection can detect whether a “super-cookie” is being stolen. This could strengthen the cookie-based authentication system and prevent account takeover attempts.
PayPal aims to mitigate the possibility of hackers gaining access to victim accounts by means of stolen cookies that carry authentication tokens, so circumventing two-factor authentication (2FA) and avoiding the requirement for legitimate passwords.
According to PayPal’s patent application, “cookie theft is a sophisticated form of cyberattack, wherein an attacker copies or steals cookies from a victim’s computer onto the attacker’s web browser.”
It is further explained that by using a web browser on the attacker’s computer read more PayPal files patent for new method to detect stolen cookies.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
