Friday, September 24, 2010

Battle.net Mobile Authenticator: MITM Vulnerability

Users of Battle.net Mobile Authenticator please be advised of a MITM vulnerability that has been identified.

To view this vulnerability, possible remedies, and others please check out the Security Advisories at Critical Watch (http://criticalwatch.com/support/security-advisories.aspx)

Amplify’d from www.criticalwatch.com
Battle.net-SA-09/20/2010: Battle.net Mobile Authenticator MITM Vulnerability
Description:



The vulnerability exists when an attacker is able to intercept the



initialization request and response bodies sent to and from the mobile



device to the server.



An attacker that is capable of intercepting the encrypted request/response



pair will also be able to derive time stamp information.
Read more at www.criticalwatch.com
 

No comments:

Post a Comment