{"id":931,"date":"2016-12-06T21:31:01","date_gmt":"2016-12-06T21:31:01","guid":{"rendered":"https:\/\/www.technology-solved.com\/huntsville-al\/?p=931"},"modified":"2019-08-12T15:24:49","modified_gmt":"2019-08-12T15:24:49","slug":"3rd-party-sign-facebook-google-may-security-flaw","status":"publish","type":"post","link":"https:\/\/www.technology-solved.com\/huntsville-al\/3rd-party-sign-facebook-google-may-security-flaw\/","title":{"rendered":"3rd Party Sign-in with Facebook or Google May Have Security Flaw"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-medium wp-image-932\" src=\"\/huntsville-al\/wp-content\/uploads\/sites\/13\/2016\/12\/3rdXParty.jpg\" alt=\"3rdxparty\" width=\"300\" height=\"225\" \/><br \/>\nIf you own your own business, then odds are good that you\u2019ve taken advantage of the \u201cSign in With Facebook\u201d (or Google) API. It\u2019s fast, it\u2019s convenient and it\u2019s one less thing to worry about.<\/p>\n<p>It gives your users an automatic way to sign onto your site, meaning that they don\u2019t have yet another password to keep track of. That\u2019s win-win, right?<\/p>\n<p>It would be, except for the fact that the technology is often misused or incorrectly applied, leaving the door open for the hackers, and making it easy to intercept password information. If that happens, the convenience of using Facebook or Google\u2019s sign-in API works against you.<\/p>\n<p>Security professionals have been shouting from the mountain tops for months about how dangerous it is to use the same password across multiple accounts. While it takes on a slightly different form, that\u2019s exactly what a Google\/Facebook sign in is, and once the hackers have your Facebook password, they can get into a number of other sites you use.<\/p>\n<p>The attack is accomplished via a \u201cman in the middle\u201d approach that allows hackers to sign into a victim\u2019s app using their own credentials.<\/p>\n<p>Once logged in, the hackers can make use of any site the user logs onto via Facebook or Google. If you\u2019ve linked your banking information to those sites, then the hackers will have access to those accounts. They can go shopping, book a vacation and basically do anything you would normally do when you sign onto those sites legitimately.<\/p>\n<p>In a recent survey of the top 600 US and Chinese mobile aps, it was found that more than 40% (41.2%) can easily be compromised in just this fashion.<\/p>\n<p>The level of exposure is staggering. This could impact more than a billion mobile devices, worldwide.<\/p>\n<p>If you make use of Facebook and\/or Google\u2019s sign-in API in the conduct of your business, it\u2019s time to do a review. You may be putting your clients at risk without realizing it.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>If you own your own business, then odds are good that you\u2019ve taken advantage of the \u201cSign in With Facebook\u201d (or Google) API. It\u2019s fast, it\u2019s convenient and it\u2019s one less thing to worry about. It gives your users an automatic way to sign onto your site, meaning that they don\u2019t have yet another password [&hellip;]<\/p>\n","protected":false},"author":15,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1],"tags":[],"class_list":["post-931","post","type-post","status-publish","format-standard","hentry","category-uncategorized"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.4 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>3rd Party Sign-in with Facebook or Google May Have Security Flaw - Computer Troubleshooters Huntsville<\/title>\n<meta name=\"description\" content=\"If you own your own business, then odds are good that you\u2019ve taken advantage of the \u201cSign in With Facebook\u201d (or Google) API. It\u2019s fast, it\u2019s convenient\" \/>\n<meta name=\"robots\" content=\"noindex, nofollow\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"3rd Party Sign-in with Facebook or Google May Have Security Flaw - Computer Troubleshooters Huntsville\" \/>\n<meta property=\"og:description\" content=\"If you own your own business, then odds are good that you\u2019ve taken advantage of the \u201cSign in With Facebook\u201d (or Google) API. It\u2019s fast, it\u2019s convenient\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.technology-solved.com\/huntsville-al\/3rd-party-sign-facebook-google-may-security-flaw\/\" \/>\n<meta property=\"og:site_name\" content=\"Computer Troubleshooters Huntsville\" \/>\n<meta property=\"article:published_time\" content=\"2016-12-06T21:31:01+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2019-08-12T15:24:49+00:00\" \/>\n<meta name=\"author\" content=\"cthuntsville\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"cthuntsville\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.technology-solved.com\\\/huntsville-al\\\/3rd-party-sign-facebook-google-may-security-flaw\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.technology-solved.com\\\/huntsville-al\\\/3rd-party-sign-facebook-google-may-security-flaw\\\/\"},\"author\":{\"name\":\"cthuntsville\",\"@id\":\"https:\\\/\\\/www.technology-solved.com\\\/huntsville-al\\\/#\\\/schema\\\/person\\\/1141e403df8721a619d7e354767b4e90\"},\"headline\":\"3rd Party Sign-in with Facebook or Google May Have Security Flaw\",\"datePublished\":\"2016-12-06T21:31:01+00:00\",\"dateModified\":\"2019-08-12T15:24:49+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.technology-solved.com\\\/huntsville-al\\\/3rd-party-sign-facebook-google-may-security-flaw\\\/\"},\"wordCount\":350,\"commentCount\":0,\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/www.technology-solved.com\\\/huntsville-al\\\/3rd-party-sign-facebook-google-may-security-flaw\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.technology-solved.com\\\/huntsville-al\\\/3rd-party-sign-facebook-google-may-security-flaw\\\/\",\"url\":\"https:\\\/\\\/www.technology-solved.com\\\/huntsville-al\\\/3rd-party-sign-facebook-google-may-security-flaw\\\/\",\"name\":\"3rd Party Sign-in with Facebook or Google May Have Security Flaw - Computer Troubleshooters Huntsville\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.technology-solved.com\\\/huntsville-al\\\/#website\"},\"datePublished\":\"2016-12-06T21:31:01+00:00\",\"dateModified\":\"2019-08-12T15:24:49+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/www.technology-solved.com\\\/huntsville-al\\\/#\\\/schema\\\/person\\\/1141e403df8721a619d7e354767b4e90\"},\"description\":\"If you own your own business, then odds are good that you\u2019ve taken advantage of the \u201cSign in With Facebook\u201d (or Google) API. It\u2019s fast, it\u2019s convenient\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.technology-solved.com\\\/huntsville-al\\\/3rd-party-sign-facebook-google-may-security-flaw\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.technology-solved.com\\\/huntsville-al\\\/3rd-party-sign-facebook-google-may-security-flaw\\\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.technology-solved.com\\\/huntsville-al\\\/3rd-party-sign-facebook-google-may-security-flaw\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Locations\",\"item\":\"https:\\\/\\\/www.technology-solved.com\\\/locations\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Alabama\",\"item\":\"https:\\\/\\\/www.technology-solved.com\\\/alabama-state\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Homepage\",\"item\":\"https:\\\/\\\/www.technology-solved.com\\\/huntsville-al\\\/\"},{\"@type\":\"ListItem\",\"position\":4,\"name\":\"3rd Party Sign-in with Facebook or Google May Have Security Flaw\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.technology-solved.com\\\/huntsville-al\\\/#website\",\"url\":\"https:\\\/\\\/www.technology-solved.com\\\/huntsville-al\\\/\",\"name\":\"Computer Troubleshooters Huntsville\",\"description\":\"\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.technology-solved.com\\\/huntsville-al\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.technology-solved.com\\\/huntsville-al\\\/#\\\/schema\\\/person\\\/1141e403df8721a619d7e354767b4e90\",\"name\":\"cthuntsville\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f49c28d4d89924d891416af438b65c9fbf92c3672c5e0dcc230d369e7105b78b?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f49c28d4d89924d891416af438b65c9fbf92c3672c5e0dcc230d369e7105b78b?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f49c28d4d89924d891416af438b65c9fbf92c3672c5e0dcc230d369e7105b78b?s=96&d=mm&r=g\",\"caption\":\"cthuntsville\"},\"url\":\"https:\\\/\\\/www.technology-solved.com\\\/huntsville-al\\\/author\\\/cthuntsville\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"3rd Party Sign-in with Facebook or Google May Have Security Flaw - Computer Troubleshooters Huntsville","description":"If you own your own business, then odds are good that you\u2019ve taken advantage of the \u201cSign in With Facebook\u201d (or Google) API. It\u2019s fast, it\u2019s convenient","robots":{"index":"noindex","follow":"nofollow"},"og_locale":"en_US","og_type":"article","og_title":"3rd Party Sign-in with Facebook or Google May Have Security Flaw - Computer Troubleshooters Huntsville","og_description":"If you own your own business, then odds are good that you\u2019ve taken advantage of the \u201cSign in With Facebook\u201d (or Google) API. It\u2019s fast, it\u2019s convenient","og_url":"https:\/\/www.technology-solved.com\/huntsville-al\/3rd-party-sign-facebook-google-may-security-flaw\/","og_site_name":"Computer Troubleshooters Huntsville","article_published_time":"2016-12-06T21:31:01+00:00","article_modified_time":"2019-08-12T15:24:49+00:00","author":"cthuntsville","twitter_card":"summary_large_image","twitter_misc":{"Written by":"cthuntsville","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.technology-solved.com\/huntsville-al\/3rd-party-sign-facebook-google-may-security-flaw\/#article","isPartOf":{"@id":"https:\/\/www.technology-solved.com\/huntsville-al\/3rd-party-sign-facebook-google-may-security-flaw\/"},"author":{"name":"cthuntsville","@id":"https:\/\/www.technology-solved.com\/huntsville-al\/#\/schema\/person\/1141e403df8721a619d7e354767b4e90"},"headline":"3rd Party Sign-in with Facebook or Google May Have Security Flaw","datePublished":"2016-12-06T21:31:01+00:00","dateModified":"2019-08-12T15:24:49+00:00","mainEntityOfPage":{"@id":"https:\/\/www.technology-solved.com\/huntsville-al\/3rd-party-sign-facebook-google-may-security-flaw\/"},"wordCount":350,"commentCount":0,"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.technology-solved.com\/huntsville-al\/3rd-party-sign-facebook-google-may-security-flaw\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.technology-solved.com\/huntsville-al\/3rd-party-sign-facebook-google-may-security-flaw\/","url":"https:\/\/www.technology-solved.com\/huntsville-al\/3rd-party-sign-facebook-google-may-security-flaw\/","name":"3rd Party Sign-in with Facebook or Google May Have Security Flaw - Computer Troubleshooters Huntsville","isPartOf":{"@id":"https:\/\/www.technology-solved.com\/huntsville-al\/#website"},"datePublished":"2016-12-06T21:31:01+00:00","dateModified":"2019-08-12T15:24:49+00:00","author":{"@id":"https:\/\/www.technology-solved.com\/huntsville-al\/#\/schema\/person\/1141e403df8721a619d7e354767b4e90"},"description":"If you own your own business, then odds are good that you\u2019ve taken advantage of the \u201cSign in With Facebook\u201d (or Google) API. It\u2019s fast, it\u2019s convenient","breadcrumb":{"@id":"https:\/\/www.technology-solved.com\/huntsville-al\/3rd-party-sign-facebook-google-may-security-flaw\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.technology-solved.com\/huntsville-al\/3rd-party-sign-facebook-google-may-security-flaw\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.technology-solved.com\/huntsville-al\/3rd-party-sign-facebook-google-may-security-flaw\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Locations","item":"https:\/\/www.technology-solved.com\/locations\/"},{"@type":"ListItem","position":2,"name":"Alabama","item":"https:\/\/www.technology-solved.com\/alabama-state\/"},{"@type":"ListItem","position":3,"name":"Homepage","item":"https:\/\/www.technology-solved.com\/huntsville-al\/"},{"@type":"ListItem","position":4,"name":"3rd Party Sign-in with Facebook or Google May Have Security Flaw"}]},{"@type":"WebSite","@id":"https:\/\/www.technology-solved.com\/huntsville-al\/#website","url":"https:\/\/www.technology-solved.com\/huntsville-al\/","name":"Computer Troubleshooters Huntsville","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.technology-solved.com\/huntsville-al\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/www.technology-solved.com\/huntsville-al\/#\/schema\/person\/1141e403df8721a619d7e354767b4e90","name":"cthuntsville","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/f49c28d4d89924d891416af438b65c9fbf92c3672c5e0dcc230d369e7105b78b?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/f49c28d4d89924d891416af438b65c9fbf92c3672c5e0dcc230d369e7105b78b?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/f49c28d4d89924d891416af438b65c9fbf92c3672c5e0dcc230d369e7105b78b?s=96&d=mm&r=g","caption":"cthuntsville"},"url":"https:\/\/www.technology-solved.com\/huntsville-al\/author\/cthuntsville\/"}]}},"_links":{"self":[{"href":"https:\/\/www.technology-solved.com\/huntsville-al\/wp-json\/wp\/v2\/posts\/931","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.technology-solved.com\/huntsville-al\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.technology-solved.com\/huntsville-al\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.technology-solved.com\/huntsville-al\/wp-json\/wp\/v2\/users\/15"}],"replies":[{"embeddable":true,"href":"https:\/\/www.technology-solved.com\/huntsville-al\/wp-json\/wp\/v2\/comments?post=931"}],"version-history":[{"count":3,"href":"https:\/\/www.technology-solved.com\/huntsville-al\/wp-json\/wp\/v2\/posts\/931\/revisions"}],"predecessor-version":[{"id":2117,"href":"https:\/\/www.technology-solved.com\/huntsville-al\/wp-json\/wp\/v2\/posts\/931\/revisions\/2117"}],"wp:attachment":[{"href":"https:\/\/www.technology-solved.com\/huntsville-al\/wp-json\/wp\/v2\/media?parent=931"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.technology-solved.com\/huntsville-al\/wp-json\/wp\/v2\/categories?post=931"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.technology-solved.com\/huntsville-al\/wp-json\/wp\/v2\/tags?post=931"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}