Hackers have discovered and taken advantage of a vulnerability present in Google’s OAuth endpoint within the current cyber threat landscape. This particular vulnerability acts as a workaround, allowing hackers to bypass the usual security measures linked to passwords. Through this exploit, these malicious individuals can gain unauthorized access to Google accounts, putting user privacy at risk and compromising the security of valuable data stored within these accounts. This breach is of utmost importance as it has the potential to expose users to numerous risks concerning the confidentiality of their personal information and data.

Google’s OAuth Endpoint:

CloudSEK researchers have discovered a previously unknown vulnerability that impacts Google’s OAuth endpoint. This vulnerability enables threat actors to regenerate expired Google authentication cookies by exploiting the “MultiLogin” endpoint. By extracting Chrome profile tokens and IDs, these malicious actors gain unauthorized access to compromised accounts, posing a persistent threat. To mitigate this risk, users are advised to log out, update their password, and then log back in. This will effectively revoke any unauthorized access and enhance the security of their accounts.

Exploit Demo: Cookie Restoration

Hudson Rock, a threat intelligence company, has recently released a YouTube video that unveils a cybercriminal’s demonstration of the cookie restoration exploit. This video showcases the exploit’s functionality and highlights how easily it can be implemented among various cyber threats.

Related Articales:

https://www.cloudsek.com/blog/compromising-google-accounts-malwares-exploiting-undocumented-oauth2-functionality-for-session-hijacking

https://www.independent.co.uk/tech/google-security-hack-cookies-password-b2473319.html