Sunday, September 13, 2026

Hackers Exploited Facebook Zero-Day Flaw & Stolen 50 Million Accounts Access Tokens

Facebook security breach, hackers steal more than 50 million accounts access tokens by exploiting a bug in View As a feature.

The access token contains information such as security credentials for a login session, user identity, and the permission. By having the access tokens hackers can take over user accounts without account passwords and without completing two-factor authentication.

Facebook Security Breach Noticed

Facebook noticed the Bug on September 25 and they said the bug was fixed now and reported to law enforcement agencies. Facebook not revealed any technical details of the vulnerability.

The social media giant said “we have reset the access tokens of the almost 50 million accounts and as a precautionary step of resetting access tokens for another 40 million accounts that have been subject to a “View As” look-up in the last year,” reads Facebook security breach update.

So as the token reset the affected users need to lo back in with the Facebook or any other apps that use Facebook login.

Facebook made changes with code for View as a feature while introducing video uploading feature in July 2017 and the attackers found the vulnerability in the code and use it to get the access tokens.

Temporarily facebook turned off View as a feature, that lets you see how your profile looks for others.

The social media giant said we just started the investigation, we have yet to determine whether these accounts were misused or any information accessed. We also don’t know who’s behind these attacks or where they’re based.

Facebook under heavy criticism after Cambridge Analytica scandal which impacts more than 87 Million users and thereafter many Quiz app NameTests spotted exposing more than 120 million users personal data publically in third-party sites.

In a recent analysis report, more than 25,000 it was found that Malicious Apps Use Facebook APIs to Obtain a Range of Information.

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Hot this week

How To Access Dark Web Anonymously and know its Secretive and Mysterious Activities

What is Deep Web The deep web, invisible web, or...

How to Build and Run a Security Operations Center (SOC Guide) – 2023

Today’s Cyber security operations center (CSOC) should have everything...

Russian Hackers Bypass EDR to Deliver a Weaponized TeamViewer Component

TeamViewer's popularity and remote access capabilities make it an...

Web Server Penetration Testing Checklist – 2026

Web server pentesting is performed under three significant categories: identity,...

ATM Penetration Testing – Advanced Testing Methods to Find The Vulnerabilities

ATM Penetration testing, Hackers have found different approaches to...

Threat Actors Use Claude AI Agents to Automate Cyberattacks and Steal Sensitive Data

Threat actors are increasingly using Claude-based AI workflows to...

China-Linked Hackers Chain Chrome Zero-Day With Windows Kernel Flaw in Attacks

China-linked threat actors UTA0560 and JungleBamboo chained a Google...

New Phishing Campaign Abuses Windows Mshta.exe to Steal Credentials and Secrets

A newly identified phishing campaign is abusing the legitimate...

CISA Warns of Critical GitLab Vulnerability Exploited in Attacks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has...

Researchers Uncover 10,000+ Malware Loaders Behind YouTube and SEO Poisoning Campaign

A long-running pay-per-install (PPI) operation that used YouTube gaming...

VLC Media Player Flaws Let Attackers Corrupt Memory and Leak Sensitive Data

Two security vulnerabilities in VLC media player versions 3.0.0...

CISA Adds Exploited MikroTik RouterOS Flaws to Security Alert

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has...

Related Articles

Recent News