The Social Media Today : Social Media Marketing And Web Tips
  • Home
  • About
  • Contact Us
  • Investors
  • Publisher And Advertiser Network
  • Webmasters Make Unlimited Money
  • Write For Us
  • Answers
    • Books
    • How To
    • Review
    • Tutor
  • Download
  • Entertainment
    • Awards Show
    • Celebs
    • Fashion
    • Movies
    • Music
  • Market
  • News
    • Business
    • Media
    • Sports
  • Offbeat
    • Causes
    • Education
    • Health
    • Lifestyle
    • Travel
  • Promotional
  • Social Media
    • Facebook
    • Google
    • LinkedIn
    • Twitter
    • Yahoo
  • Software
    • Apple
    • Linux
    • Windows
  • Technology
    • Application
    • Games
    • Mobile
  • Web
    • Bootstrap
    • Domain
    • Hosting
    • Joomla
    • Marketing
    • Resources
    • Scripts
    • SEO
    • Templates
    • Tutorials
    • wordpress
      • Premium Plugins
      • Theme Junkie
      • Wp Themes
      • Wpnow
      • Wpzoom
      • Yootheme
      • Yoshz
Home How To Microsoft has fixed a flaw in Hotmail’s password reset system

Microsoft has fixed a flaw in Hotmail’s password reset system

Rebecca Apr 29th, 2012 Comments
Microsoft has issued a fix for its Hotmail webmail service after a bug allowed hackers to reset the passwords for email accounts.
Hotmial hacking free software

First spotted earlier this month, the flaw let attackers abuse the password recovery system to take over accounts by using reset tokens – the link sent out to rest a password when you forget what it is.

According to reports, all the hacker had to do was request a password reset and then intercept and alter the link using a Firefox add-on called Tamper Data.

Here’s how the researcher recreated the attack technique to identify the vulnerability, as described by him.
Exploitation Techique(s):
- Bypass the Recovery Mod Page to New Pass or Reset;
- Bypass token protection via not empty value or positive value(s);
- Setup new password;
- Decode CAPTCHA and send automatic values.

Initially hackers were offering to crack accounts for $20 a throw. However, the technique became publicly known and started to spread rapidly with Web and YouTube tutorials showing the technique popping up across the Arabic-speaking Internet.

Microsoft quietly fixed the problem last week. “On Friday we addressed a reset function incident to help protect Hotmail customers, no action needed,” Microsoft said via Twitter.

How to hack email address and password

Microsoft has fixed a flaw in Hotmail's password reset system

Microsoft fixed the fault and updated Hotmail to close the loophole, with Hotmail servers now returning an error when attackers try to manipulate data exchanges.

Tags: download email hack exe download email password hacking tools download free software to hack Hotmail Email Account

Rebecca

Popular SocialMedia News

© 2013 The Social Media Today : Social Media Marketing And Web Tips. All rights reserved.
Social Media Group (c) 2010