Account Takeover in Facebook mobile app due to usage of cryptographically unsecure random number generator and XSS in Facebook JS SDK /r/netsec - Information Security News & Discussion By: /u/smaury 18 January 2026 at 09:47 submitted by /u/smaury [link] [comments]
Multiple cross-site leaks disclosing Facebook users in third-party websites /r/netsec - Information Security News & Discussion By: /u/smaury 16 January 2026 at 10:26 submitted by /u/smaury [link] [comments]
Instagram account takeover via Meta Pixel script abuse /r/netsec - Information Security News & Discussion By: /u/smaury 16 January 2026 at 10:26 submitted by /u/smaury [link] [comments]
Leaking Meta FXAuth Token leading to 2 click Account Takeover /r/netsec - Information Security News & Discussion By: /u/smaury 16 January 2026 at 10:26 submitted by /u/smaury [link] [comments]
Multiple XSS in Meta Conversion API Gateway Leading to Zero-Click Account Takeover /r/netsec - Information Security News & Discussion By: /u/smaury 14 January 2026 at 15:13 submitted by /u/smaury [link] [comments]