API Security Flaw Found in Booking.com Allowed Full Account Takeover
The Open Authorization (OAuth) social-login mechanism employed by the online travel service Booking.com has been revealed to have several security issues.
The vulnerabilities found by Salt Security might have an impact on anyone using their Facebook accounts to get into the website.
According to Salt Security security researcher Aviad Carmel, "The OAuth misconfigurations might have enabled both large-scale account takeover (ATO) on users' accounts and server intrusion.
OAuth, according to the security expert, makes it easier for users to connect with websites read more API Security Flaw Found in Booking.com Allowed Full Account Takeover.
Stay informed with the best cybersecurity news and raise your cybersecurity awareness with our comprehensive coverage of the latest threats, ...

