Twitter discloses Firefox bug that cached private files sent or received via DMs
#1
Information 
Quote:Social networking giant Twitter disclosed today a bug on its platform that impacted users who accessed their platform using Firefox browsers.
 
According to Twitter, its platform stored private files inside the Firefox browser's cache -- a folder where websites store information and files temporarily.
 
Twitter said that once users left their platform or logged off, the files would remain in the browser cache, allowing anyone to retrieve it.
 
The company is now warning users who share workstations or used a public computer that some of their private files may still be present in the Firefox cache. Malware present on a system could also scrape and steal this data, if ever configured to do so.
 
This might include files sent or received via direct messages (DMs), data archive files downloaded from a profile's settings page, and others. Twitter said these files would remain on a system, even if the user logged off from their accounts.

The company said the bug's impact is somewhat limited as Firefox automatically purges all cached data older than seven days.
 
"If you use, or have used, a public or shared computer to access Twitter, we encourage you to clear the browser cache before logging out, and to be cautious about the personal information you download on a computer that other people use," Twitter said.

The cache can be cleared in Firefox by going to Tools > Options > Privacy & Security > Cookie and Site Data > Clear Data.
 
Twitter said it has now fixed this bug to prevent its platform from caching non-public information. The company also said the bug did not affect users using other browsers like Safari or Chrome.

[Image: firefox-clear-cache.png]
Image: ZDNet

Source: https://www.zdnet.com/article/twitter-di...d-via-dms/
[-] The following 1 user says Thank You to silversurfer for this post:
  • harlan4096
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
K-Lite Codec Pack 19.0.5 / 19.0.7 Update
Changes in 19.0.7 ...harlan4096 — 05:52
AnyDesk 9.5.8 for Windows
AnyDesk 9.5.8 for ...harlan4096 — 05:50
Notepad++ v8.8.3
Notepad++ v8.8.3 s...harlan4096 — 05:49
Intel releases new Arc PRO graphics driv...
Intel’s new GPU dr...harlan4096 — 05:48
Microsoft caused and fixed a WSUS Synchr...
Reports about prob...harlan4096 — 05:47

[-]
Birthdays
Today's Birthdays
avatar (49)WillieVot
Upcoming Birthdays
avatar (45)RidgeDimb
avatar (36)ipumaqar
avatar (50)tanliorsPeri
avatar (42)lapedDow
avatar (48)rituabew
avatar (36)omyjul
avatar (40)papedDow
avatar (49)ArnoldFum
avatar (37)yfaza
avatar (48)Kevensi
avatar (38)boineDon
avatar (39)Grompelbawn
avatar (40)vkseogaF
avatar (36)usogy
avatar (39)ywixazok
avatar (37)ixoqe
avatar (35)pa.OpenTran

[-]
Online Staff
There are no staff members currently online.

>