Malware abuses Google OAuth endpoint to ‘revive’ cookies, hijack accounts

Multiple information-stealing malware families are abusing an undocumented Google OAuth endpoint named “MultiLogin” to restore expired authentication cookies and log into users’ accounts, even if an account’s password was reset. […]

Source: ​BleepingComputer  |  Read More 

Leave a Reply

Your email address will not be published. Required fields are marked *