Security News > 2019 > January > Epic's Fortnite fail: Ancient UT2004 server used for login-stealing proof-of-concept

Epic's Fortnite fail: Ancient UT2004 server used for login-stealing proof-of-concept
2019-01-16 14:13

A tale of XSS, SQL injection and OAuth implementation Crafty infosec bods exploited XSS vulns on dusty corners of Epic Games’ web infrastructure to steal Fortnite gamers’ login tokens and compromise their accounts – using a genuine Epic Games URL to phish their marks.…


News URL

http://go.theregister.com/feed/www.theregister.co.uk/2019/01/16/fortnite_security_vuln_token_theft/