Twitter fixes bug that left users’ account logged in after password reset

Twitter has disclosed a bug that allowed accounts to stay logged in from multiple devices after a voluntary password reset, putting users’ data at potential hacking risk.

The company said that it has fixed the bug that didn’t close all active logged in sessions on Android and iOS devices after an account’s password was reset.

‘If you proactively changed your password on one device, but still had an open session on another device, that session may not have been closed. Web sessions were not affected and were closed appropriately,’ the micro-blogging platform said in a statement late on Wednesday.

Read more

You may also like

Comments are closed.