web analytics

Hacker Earn 50K Miles From United Airlines

Ethical Hacking

Hacker Earn 50K Miles From United Airlines





















Rahul Mohanraj, a security researcher was interested in getting millions of miles from United Airlines bounty program. The researcher found a minor bug on United Airlines website but decided not to report because it would not get much from it. So he decided to continue his research. As he went through the website, he found out that when changing secondary email to primary did not had CSRF token (Cross Site Request Forgery). He reported this bug and was awarded 50,000 miles from United Airlines.

So what is CSRF?

Cross-Site Request Forgery (CSRF) is a type of attack when malicious website, email, blog, message causes a user’s web browser to perform unwanted action normally with malicious intention.

Author: Shivniel Gounder

TheGeek : Writes about information security, privacy, cybersecurity and latest tech gadgets and more.

Share This Post On

Submit a Comment

This site uses Akismet to reduce spam. Learn how your comment data is processed.

%d bloggers like this: