Steam Profile XSS Attack - Threat Wire




Threat Wire show

Summary: <br> Simply viewing a Steam profile could put you at risk, Wordpress fixes a rather big problem, and WhatsApp introduces two step verification. All that coming up now on Threat Wire.<br>  <br> -------------------------------<br> Shop: http://www.hakshop.com<br> Support: http://www.patreon.com/threatwire<br> Subscribe: http://www.youtube.com/hak5<br> Our Site: http://www.hak5.org<br> Contact Us: http://www.twitter.com/hak5<br> Threat Wire RSS: https://shannonmorse.podbean.com/feed/<br> Threat Wire iTunes: https://itunes.apple.com/us/podcast/threat-wire/id1197048999<br> ------------------------------<br>  <br> Links:<br> <a href="https://arstechnica.com/security/2017/02/as-valve-eradicates-serious-bug-in-steam-heres-what-you-need-to-know/">https://arstechnica.com/security/2017/02/as-valve-eradicates-serious-bug-in-steam-heres-what-you-need-to-know/</a><br> <a href="https://www.reddit.com/r/Steam/comments/5skfg4/warning_regarding_a_steam_profile_related_exploit/">https://www.reddit.com/r/Steam/comments/5skfg4/warning_regarding_a_steam_profile_related_exploit/</a><br> <a href="https://www.reddit.com/r/Steam/comments/5srlwd/the_steam_community_exploit_explained_indepth_by/">https://www.reddit.com/r/Steam/comments/5srlwd/the_steam_community_exploit_explained_indepth_by/</a><br> <a href="https://www.youtube.com/watch?v=lGF_QO3W3GQ">https://www.youtube.com/watch?v=lGF_QO3W3GQ</a><br>  <br> <a href="https://arstechnica.com/security/2017/02/virally-growing-attacks-on-unpatched-wordpress-sites-affects-2m-pages/">https://arstechnica.com/security/2017/02/virally-growing-attacks-on-unpatched-wordpress-sites-affects-2m-pages/</a><br> <a href="https://thehackernews.com/2017/02/wordpress-hack-seo.html">https://thehackernews.com/2017/02/wordpress-hack-seo.html</a><br> <a href="https://threatpost.com/attackers-capitalizing-on-unpatched-wordpress-sites/123617/">https://threatpost.com/attackers-capitalizing-on-unpatched-wordpress-sites/123617/</a><br> <a href="https://blog.sucuri.net/2017/02/wordpress-rest-api-vulnerability-abused-in-defacement-campaigns.html">https://blog.sucuri.net/2017/02/wordpress-rest-api-vulnerability-abused-in-defacement-campaigns.html</a><br> <a href="https://wordpress.org/news/2017/01/wordpress-4-7-2-security-release/">https://wordpress.org/news/2017/01/wordpress-4-7-2-security-release/</a><br>  <br> <a href="http://www.phonearena.com/news/WhatsApp-now-using-a-two-step-verification-process_id90874">http://www.phonearena.com/news/WhatsApp-now-using-a-two-step-verification-process_id90874</a><br> <a href="https://www.whatsapp.com/faq/en/general/26000021">https://www.whatsapp.com/faq/en/general/26000021</a><br> <br> <br> <br> Youtube Thumbnail credit:<br> <a href="https://mygaming.co.za/news/wp-content/uploads/2015/08/Most-popular-and-highest-rated-games-currently-on-Steam.jpg">https://mygaming.co.za/news/wp-content/uploads/2015/08/Most-popular-and-highest-rated-games-currently-on-Steam.jpg</a><br>