Hacking Grindr Accounts with Copy and Paste
Troy Hunt
OCTOBER 2, 2020
The vulnerability allow an attacker to hijack any account. On a surface of it, things looked bad: complete account takeover with a very trivial attack. All I needed was for Scott to create an account and let me know the email address he used which in this case, was test@scotthelme.co.uk. Full account takeover.
Let's personalize your content