Salt Labs identified an authentication flaw that could have enabled large-scale account takeover (ATO)
PALO ALTO, Calif., July 7, 2022 /PRNewswire/ -- Salt Security, the leading API security company, today released new API threat research from Salt Labs that highlights an API security vulnerability discovered on a large online cryptocurrency wallet platform. Serving two million users worldwide, the platform provides a wide range of services enabling customers to buy and exchange cryptocurrencies online. The API security flaw discovered by Salt Labs, tied to external authentication logins, could allow for large-scale account takeover (ATO) attacks on any customer's account. The vulnerability could have allowed for hundreds of millions to be stolen from crypto currency wallets.
Salt Labs' researchers discovered the vulnerability in the "User Login" functionality of the platform specifically when using the Google authentication feature. Like many external authentication methods, Google...
Read Full Story:
https://www.prnewswire.com/news-releases/salt-security-finds-api-security-fla...
Your content is great. However, if any of the content contained herein violates any rights of yours, including those of copyright, please contact us immediately by e-mail at media[@]kissrpr.com.