OAuth Flaw in Facebook Gives Researcher Full Control over Any Account – Video

Security researcher Nir Goldshlager has identified a serious bug in the OAuth system used by Facebook, which allowed him to gain full control of any user account, even if the victim never “allowed” any apps. The OAuth system is used by Facebook for communication between apps and ... [ read more >> ]

Facebook access token details

Image comment: Facebook access token details
Image credits: Nir Goldshlager

Facebook access token details