Auteur Sujet: [AVAST]Flaw in Evernote Chrome Ext Put 4.6M at Risk | Avast  (Lu 2575 fois)

0 Membres et 1 Invité sur ce sujet

Hors ligne igor51

  • Admin
  • Mega Power Members
  • *****
  • Messages: 10419
Flaw in Evernote Chrome Ext Put 4.6M at Risk | Avast

4.6M Evernote users put at risk


Cybersecurity watchdogs discovered a critical flaw in the popular organization app Evernote, reported Bleeping Computer. The vulnerability allows attackers to access sensitive information stored on third-party sites connected to the Evernote account. By exploiting a logical coding error in the Evernote Web Clipper Chrome extension, attackers could gain privileges in Iframes beyond Evernote’s domain. Users can link various third-party sites to their Evernote app, creating an unintentional linked database of login credentials, financial data, personal communications, and more, which attackers could explore and steal.


Source: Flaw in Evernote Chrome Ext Put 4.6M at Risk | Avast

Tags: