Paypal Vulnerability Is Still Unpatched Researchers Say
Turning PayPal’s payment convenience on its head, one click is all that an attacker needs to drain your PayPal account. A security researcher has shown how PayPal’s one-click pay mechanism can be abused to steal money, with a single click.The researcher claims the vulnerability was first discovered in October 2021 and remains unpatched till today.Security experts laud the novelty of the attack but remain skeptical about its real-world use. A security researcher has demonstrated what he claims is a yet-unpatched vulnerability in PayPal that could essentially allow attackers to empty a victim’s PayPal account after tricking them into clicking a malicious link, in what is technically referred to as a clickjacking attack....