Hacking Facebook Account with 'Reconnect' Tool
Mar 11, 2015
    " Signup or Login with Facebook " ?? You might think twice before doing that next time. A security researcher has discovered a critical flaw that allows hackers take over Facebook accounts  on websites that leverage ' Login with Facebook ' feature.     The vulnerability doesn't grant hackers access to your actual Facebook password, but it does allow them to access your accounts using Facebook application developed by third-party websites such as Bit.ly , Mashable , Vimeo , About.me , Stumbleupon , Angel.co  and possibly many more.     FLAW EXPLOITS THREE CSRFs PROTECTION   Egor Homakov , a researcher with pentesting company Sakurity, made the social network giant aware of the bug a year ago, but the company refused to fix the vulnerability because doing so would have ruined compatibility of Facebook with a vast number of websites over the Internet.     The critical flaw abuses the lack of CSRF ( Cross-Site Request Forgery ) protection for three different proce...