Facebook Username Takeover via Broken Link in Footer
Low
O
Omise
Submitted None
Actions:
Reported by
vulnerability_is_here
Vulnerability Details
Technical details and impact analysis
## Summary:
- Target URL:
`https://www.opn.ooo/th-en/` (Footer Section)
- Affected Component:
- The Facebook icon in the footer links to: `https://www.facebook.com/Opnglobal`
-This link is broken (leads to a “Deleted account” error).
## Steps To Reproduce:
- Go to https://www.opn.ooo/th-en/
Click on facebook icon
- You will redirected to a https://www.facebook.com/Opnglobal available for takeover
- Check here https://brandsnag.com/facebook-username-checker for username
## Impact
- Users can be misled into trusting a fake Facebook page.
- An attacker can post fake updates, run scam ads, or collect user data.
- The organization loses control over its social media presence.
Report Details
Additional information and metadata
State
Closed
Substate
Resolved
Submitted
Weakness
Improper Access Control - Generic