Twitter | Pretraživanje | |
svbl
TIL you can leak the device name with attempted pw reset of a Gmail account.
Reply Retweet Označi sa "sviđa mi se" More
Royce Williams 2. sij
Odgovor korisniku/ci @svblxyz
What is the workflow to get to this particular dialog? I've run through a few Gmail accounts and can't get this result - only masked email addresses.
Reply Retweet Označi sa "sviđa mi se"
pry0cc 2. sij
Odgovor korisniku/ci @TychoTithonus @svblxyz
“Try another way” and be in the same geographical location as the account
Reply Retweet Označi sa "sviđa mi se"
Adrian Rueegsegger 3. sij
Odgovor korisniku/ci @svblxyz @tehjh @pvineetha
Namespace compromise. /cc
Reply Retweet Označi sa "sviđa mi se"
✨ Lizard Queen (Pronouns: TRH-TheirRoyalHighness)✨ 3. sij
Odgovor korisniku/ci @Kensan42 @svblxyz i 2 ostali
Yup, saw this... FWIW this was one of the gmail password reset compromise things I was discussing with over the summer. We were discussing him sending me a follow up email about his experience but meanwhile I got other sources in the wild such as this one.
Reply Retweet Označi sa "sviđa mi se"
David Anson 2. sij
Odgovor korisniku/ci @svblxyz @ericlaw
Which wouldn’t be as much of a concern if your device name was meaningless.
Reply Retweet Označi sa "sviđa mi se"
OSINT 2. sij
Odgovor korisniku/ci @svblxyz @KAS_stoner
Sometimes there is even a drop down and you can see multiple phones if they have more than one connected. And to the others in this thread, being close geographically is the first time I am hearing about it. I have seen this on US accounts and I am in the UK.
Reply Retweet Označi sa "sviđa mi se"
Super1337Johanssonson 3. sij
Odgovor korisniku/ci @svblxyz @campuscodi
Always knew of this technique, but unsure about the legal implications, if any when doing so. Maybe someone who knows the law could chime in. For future reference and such.
Reply Retweet Označi sa "sviđa mi se"