Skip to main content

Yahoo Mail hacked via XSS exploit, loophole fixed soon after

posted onJanuary 9, 2013
by l33tdawg

Reports about a malicious link compromising the security of several Yahoo! Mail accounts surfaced yesterday. The Next Web reports that a hacker going by the name Shahin Ramezany uploaded a YouTube video demonstrating how a Yahoo! account can be compromised with a DOM-based XSS vulnerability that can be misused across all major browsers.

Ramezany’s technique, as depicted in the video, comes across as simple and and can be done in a short time. In fact,  if Ramezany is to be believed, then as many as 400 million Yahoo! Mail users faced the risk of becoming victims of this vulnerability.

Folks at TNW soon got in touch with Yahoo! to know more on the issue and this is what a Yahoo! spokesperson in the UK had to say, "We’ve been looking into it and the US have now confirmed that they are investigating too. They will be in touch if there is a comment – otherwise I recommend that if users are concerned then they should change their passwords immediately." 

Source

Tags

Yahoo Security

You May Also Like

Recent News

Friday, November 8th

Friday, November 1st

Tuesday, July 9th

Wednesday, July 3rd

Friday, June 28th

Thursday, June 27th

Thursday, June 13th

Wednesday, June 12th

Tuesday, June 11th

Friday, June 7th