Microsoft’s Hotmail and Outlook.com Are Wide Open to Hackers

Status
Not open for further replies.

DrBeenGolfing

Level 1
Thread author
Verified
Mar 16, 2013
582
Both Hotmail and Outlook.com email services are vulnerable to session fixation attacks that could allow cybercriminals to get full control of an account due to what seems to be an issue affecting the management of cookies and sessions.

Security guru Rishi Narang wrote on his blog that Microsoft’s emails platforms, along with Twitter, Yahoo and LinkedIn accounts, are all vulnerable to this flaw that could be quickly exploited even by someone without too much hacking experience.

“Microsoft mail services are vulnerable to this session management flaw. Apart from your regular MSN/Live email accounts, you can also move your corporate accounts on outlook exchange mail service. Thus, it also affects your Microsoft hosted corporate accounts. Now, the problem with outlook/live is that it authenticates the old session cookies even if the user has logged out from the session,” Narang explained.
More:
http://news.softpedia.com/news/Microsoft-s-Hotmail-and-Outlook-com-Are-Wide-Open-to-Hackers-339466.shtml
 
Status
Not open for further replies.

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top