5 year old exposes major Xbox One security flaw

Profane

___________
Joined
Apr 30, 2012
Messages
1,438
Reputation
290
Daps
3,097

A five-year-old boy who worked out a security vulnerability on Microsoft's Xbox Live service has been officially thanked by the company.

Kristoffer Von Hassel, from San Diego, figured out how to log in to his dad's account without the right password.

Microsoft has fixed the flaw, and added Kristoffer to its list of recognised security researchers.

In an interview with local news station KGTV, Kristoffer said: "I was like yea!"

The boy worked out that entering the wrong password into the log-in screen would bring up a second password verification screen.

Kristoffer discovered that if he simply pressed the space bar to fill up the password field, the system would let him in to his dad's account.

"I got nervous. I thought he was going to find out," Kristoffer told television station, KGTV.

"I thought someone was going to steal the Xbox."

Free games
Dad Robert - who works in security - sent details of the flaw to Microsoft.

In a statement, the company said: "We're always listening to our customers and thank them for bringing issues to our attention.

"We take security seriously at Xbox and fixed the issue as soon as we learned about it."

Kristoffer's name now appears on a page set up to thank people who have discovered problems with Microsoft products.

The company also gave him four free games, $50 (£30), and a year-long subscription to Xbox Live.
http://www.bbc.com/news/technology-26879185

:snoop:
 

PS5 Pro

DC looking a 1/2 seed right about nuh
Joined
Feb 28, 2013
Messages
32,381
Reputation
-10,601
Daps
22,224
Reppin
The Original Rec Room Gang
*waits for Courtdog and his minions to bring up the psn hack*
Its not the hack as much as it was how they handled everything before and after the hack
The security was laughable, then they let the bad guys have a week long headstart cuz they wanted to save face
Which goes in line with how they have always operated as a company
meanwhile on the greener side, the problem was handled so fast, you didn't know it was a vulnerbility until it was already fixed :win:
The Xbox One gets updated every MONTH unlike how the 360 was updated twice a year?
The PS4 gets updated once every blue moon, just like its library :bryan:
 

Lord Beasley

Veteran
Supporter
Joined
Aug 2, 2012
Messages
48,031
Reputation
3,680
Daps
94,116
Reppin
469 x 972 x 702
Its not the hack as much as it was how they handled everything before and after the hack
The security was laughable, then they let the bad guys have a week long headstart cuz they wanted to save face
Which goes in line with how they have always operated as a company
meanwhile on the greener side, the problem was handled so fast, you didn't know it was a vulnerbility until it was already fixed :win:
The Xbox One gets updated every MONTH unlike how the 360 was updated twice a year?
The PS4 gets updated once every blue moon, just like its library :bryan:
because this isn't a glaring security flaw :comeon:

SPIN SPIN SPIN THE GLOBE XBOTS...

who are you to say no one knew about it before this news broke??? you actually believe a 5 year old was teh first person to discover this shyt? :heh: the delusions.....
 
Top