Microsoft fixes Skype account hijack issue

4.6
As we reported previously, a major security flaw was discovered earlier this morning on Microsoft's Skype VoIP service, which allowed anyone to obtain a Skype account password via email, and thus hijack any Skype account. Microsoft has now announced this issue has now been fixed.

In a post on the Skype Heartbeat blog, the company's Leonas Sendrauskas stated:

Early this morning we were notified of user concerns surrounding the security of the password reset feature on our website. This issue affected some users where multiple Skype accounts were registered to the same email address. We suspended the password reset feature temporarily this morning as a precaution and have made updates to the password reset process today so that it is now working properly. We are reaching out to a small number of users who may have been impacted to assist as necessary. Skype is committed to providing a safe and secure communications experience to our users and we apologize for the inconvenience.
Even though Skype and Microsoft have said they have fixed this particular exploit, we would definitely recommend that all Skype users change their passwords immediately just in case.

Posted:
Related Forum: PC General Forum

Source: http://www.neowin.net/news/microsoft-fixes-skype-account-hijack-issue

Comments

"Microsoft fixes Skype account hijack issue" :: Login/Create an Account :: 25 comments

If you would like to post a comment please signin to your account or register for an account.

L33t-Ninja-MuchPosted:

only hurt people with credits to call people or phone thats about it

bbyPosted:

It probably isn't fixed.

ViewBotsPosted:

DUI haha bet its not fixed ;)


I bet it is not either. They just put some bullish patch. Lmao.

JizuePosted:

haha bet its not fixed ;)

PoonPosted:

8th thats why ive been seeing people sell skypes like with 3 or 4 letter words, people were charging $50 -_-


Never thought of that. and if someone that is buy a Skype for 50 than they are stupid

PoonPosted:

They should also fix the virus that is going around...

JupPosted:

Hmm I didn't know about this till now

ChromeModzPosted:

Super_Skunk They need to fix the IP resolving. You can grab anybody's IP who has Skype. Way to many kids out there with there host booters. DDoSing isn't cool, big or funny.


Agreed!

Blueberry_CheesePosted:

They need to fix the IP resolving. You can grab anybody's IP who has Skype. Way to many kids out there with there host booters. DDoSing isn't cool, big or funny.

VisionaryMGMTPosted:

Smurfs I did not know there was an issue like this.


I wish I knew about this lol, I would've toyed around with my friends accounts :P