{"id":52083,"date":"2023-05-25T14:30:45","date_gmt":"2023-05-25T14:30:45","guid":{"rendered":"https:\/\/packetstormsecurity.com\/news\/view\/34657\/API-Bug-In-OAuth-Dev-Tool-Opened-Apps-To-Account-Hijacking.html"},"modified":"2023-05-25T14:30:45","modified_gmt":"2023-05-25T14:30:45","slug":"api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\/","title":{"rendered":"API Bug In OAuth Dev Tool Opened Apps To Account Hijacking"},"content":{"rendered":"<div><img decoding=\"async\" src=\"https:\/\/files.scmagazine.com\/wp-content\/uploads\/2023\/05\/0524_security.jpg\" class=\"ff-og-image-inserted\"><\/div>\n<p>A critical API flaw in the Expo open-source framework allowed attackers to harvest auth credentials via the Open Authorization (OAuth) protocol. The vulnerability, while impacting a relatively small number of developers, had the potential to impact a wide range of users logging in to online services such as Facebook, Twitter or Spotify via the open-source framework, according to the researchers at Salt Labs who found the bugs.<\/p>\n<p>A successful attack could of allowed an adversary to take over accounts and steal credentials on a mobile app or website that was configured to use the Expo AuthSession Redirect Proxy. Attacks could have been triggered simply by a victim clicking on a malicious link. &nbsp;<\/p>\n<p>Expo (auth.expo.io) is used by developers to build native apps for iOS, Android and web platforms using a single set of tools, libraries and services and considered an effective way to accelerate the development process of applications.&nbsp;<\/p>\n<p>&#8220;The vulnerability may impact hundreds of companies using Expo, including Codecademy,&#8221; according to Salt Labs. Researchers stress &#8220;the surface area of auth.expo.io is small&#8221; thereby reducing the number of impacted social sign-on instances.<\/p>\n<p>Codecademy is a popular online platform with 100 million users and offers free coding classes. &#8220;The Salt Labs team was able to exploit the Expo vulnerability on the Codecademy site to gain complete control of accounts,&#8221; wrote researchers in <a href=\"https:\/\/blog.expo.dev\/security-advisory-for-developers-using-authsessions-useproxy-options-and-auth-expo-io-e470fe9346df\" target=\"_blank\" rel=\"noreferrer noopener\">a May 24 blog post.<\/a><\/p>\n<p>The industry-standard <a rel=\"noreferrer noopener\" href=\"https:\/\/www.scmagazine.com\/news\/cloud-security\/threat-actors-that-compromised-two-oauth-integrators-could-potentially-penetrate-cloud-systems%EF%BF%BC\" target=\"_blank\">OAuth is used by sites and apps <\/a>as a \u201cone click\u201d login to access sites using social media accounts instead of the more traditional user registration and username\/password authentication.<\/p>\n<p>Researchers discovered that by manipulating steps in <a rel=\"noreferrer noopener\" href=\"https:\/\/www.scmagazine.com\/news\/application-security\/another-database-compromise-reported-in-github-heroku-oauth-tokens-case\" target=\"_blank\">the OAuth sequences<\/a> on the Expo site, they could hijack sessions and take over accounts; steal user financial and health data and perform actions as the user.&nbsp;<\/p>\n<p>The researchers disclosed their findings to Expo, which quickly fixed the API vulnerability. Expo said the flaw,<a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2023-28131\"> tracked as CVE-2023-28131<\/a> and with a CVSS rating of 9.6, had not been exploited in the wild.<\/p>\n<p>The bug is classified as an API redirect vulnerability. The flaw traces back to the auth.expo.io framework and the fact it stored an app\u2019s callback URL &#8220;before the user explicitly confirmed they trust the callback URL,&#8221; according <a rel=\"noreferrer noopener\" href=\"https:\/\/blog.expo.dev\/security-advisory-for-developers-using-authsessions-useproxy-options-and-auth-expo-io-e470fe9346df\" target=\"_blank\">to a technical description<\/a>. The vulnerability was identified in February, disclosed via the NIST national vulnerabilities <a rel=\"noreferrer noopener\" href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2023-28131\" target=\"_blank\">database in April <\/a>and updated May 2.<\/p>\n<p>Zane Bond, head of product at Keeper Security, said engineers implementing OAuth should question what the different options do, choose the more secure option when possible, and be sure to validate the potential impact when choosing options outside of defaults.<\/p>\n<p>\u201cFor security-conscious users, using OAuth to create accounts on third-party apps or websites comes with both security advantages and risks that should be weighed on a case-by-case basis,\u201d said Bond.<\/p>\n<p>Mike Parkin, senior technical engineer at Vulcan Cyber, said the potential risk from the OAuth vulnerability was relatively broad.&nbsp;<\/p>\n<p>\u201cThe challenge with any authentication scheme, including OAuth, is implementing it securely \u2026 implementing OAuth securely is still a non-trivial task,\u201d said Parkin.<\/p>\n<p>READ MORE <a href=\"https:\/\/packetstormsecurity.com\/news\/view\/34657\/API-Bug-In-OAuth-Dev-Tool-Opened-Apps-To-Account-Hijacking.html\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>READ MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":52084,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[60],"tags":[10423],"class_list":["post-52083","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-packet-storm","tag-headlineflawpassword"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.1 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>API Bug In OAuth Dev Tool Opened Apps To Account Hijacking 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"API Bug In OAuth Dev Tool Opened Apps To Account Hijacking 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2023-05-25T14:30:45+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/files.scmagazine.com\/wp-content\/uploads\/2023\/05\/0524_security.jpg\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"API Bug In OAuth Dev Tool Opened Apps To Account Hijacking\",\"datePublished\":\"2023-05-25T14:30:45+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\\\/\"},\"wordCount\":519,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2023\\\/05\\\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking.jpg\",\"keywords\":[\"headline,flaw,password\"],\"articleSection\":[\"Packet Storm\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\\\/\",\"name\":\"API Bug In OAuth Dev Tool Opened Apps To Account Hijacking 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2023\\\/05\\\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking.jpg\",\"datePublished\":\"2023-05-25T14:30:45+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2023\\\/05\\\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2023\\\/05\\\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking.jpg\",\"width\":1280,\"height\":800},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"headline,flaw,password\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/tag\\\/headlineflawpassword\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"API Bug In OAuth Dev Tool Opened Apps To Account Hijacking\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"API Bug In OAuth Dev Tool Opened Apps To Account Hijacking 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\/","og_locale":"en_US","og_type":"article","og_title":"API Bug In OAuth Dev Tool Opened Apps To Account Hijacking 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2023-05-25T14:30:45+00:00","og_image":[{"url":"https:\/\/files.scmagazine.com\/wp-content\/uploads\/2023\/05\/0524_security.jpg","type":"","width":"","height":""}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"API Bug In OAuth Dev Tool Opened Apps To Account Hijacking","datePublished":"2023-05-25T14:30:45+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\/"},"wordCount":519,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2023\/05\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking.jpg","keywords":["headline,flaw,password"],"articleSection":["Packet Storm"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\/","url":"https:\/\/www.threatshub.org\/blog\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\/","name":"API Bug In OAuth Dev Tool Opened Apps To Account Hijacking 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2023\/05\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking.jpg","datePublished":"2023-05-25T14:30:45+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\/#primaryimage","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2023\/05\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2023\/05\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking.jpg","width":1280,"height":800},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/api-bug-in-oauth-dev-tool-opened-apps-to-account-hijacking\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"headline,flaw,password","item":"https:\/\/www.threatshub.org\/blog\/tag\/headlineflawpassword\/"},{"@type":"ListItem","position":3,"name":"API Bug In OAuth Dev Tool Opened Apps To Account Hijacking"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/52083","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=52083"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/52083\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media\/52084"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=52083"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=52083"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=52083"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}