January 2024

Malware exploits Google OAuth endpoint revealing Google account passwords

In a concerning revelation, multiple information-stealing malware families are exploiting an undocumented Google OAuth endpoint named “MultiLogin” to revive expired authentication cookies, providing unauthorized access to users’ Google accounts. Session cookies, designed to have a limited lifespan, usually expire, preventing prolonged unauthorized access. However, threat actors have discovered a zero-day exploit allowing them to regenerate

Malware exploits Google OAuth endpoint revealing Google account passwords Read More »