Xbox password flaw exposed by five-year-old boy
Kristoffer Von Hassel, from San Diego, figured out how to log in to his dad's account without the right password.
Microsoft has fixed the flaw, and added Kristoffer to its list of recognised security researchers.
In an interview with local news station KGTV, Kristoffer said: "I was like yea!"
The boy worked out that entering the wrong password into the log-in screen would bring up a second password verification screen.
Kristoffer discovered that if he simply pressed the space bar to fill up the password field, the system would let him in to his dad's account.
Kristoffer's name now appears on a page set up to thank people who have discovered problems with Microsoft products.
The company also gave him four free games, $50 (£30), and a year-long subscription to Xbox Live.
Posted:
Related Forum: Xbox Forum
Source: http://www.bbc.co.uk/news/technology-26879185
Related Articles
Comments
SmurfsPosted:
I heard about this, I thought it was kinda funny. But I think they should've given the kid more to reward him because he discovered a big flaw.
KixaPosted:
Smog You can already tell that kid's going places
When he is older he probbaly be working for microsoft :p
Evo8Posted:
Pounce They gave stuff away because of something found by a 5 year old boy on accident. :facepalm: Murica
He breached their security, he deserved compensation.
U-HaulPosted:
They gave stuff away because of something found by a 5 year old boy on accident. :facepalm: Murica
AzirPosted:
Honestly just entering random needs and letters then all spaces doesn't mean he's going anywhere. Yeah good find but seriously guys.
3OH3Posted:
The kids dad is a technology security expert. It's very possible that he found it out first and gave his kid credit just so they could get on the news. Not saying that happened but it is very possible
Latest Downloads
- 01. S.T.A.L.K.E.R. 2: Heart of Chornobyl - SaveGame (Before the final quests)(2)
- 02. EU - Digimon Survive (CUSA18242)(0)
- 03. Callisto Protocol - NG+ Hardcore File Save(0)
- 04. Goat Simulator 3: SaveGame (Save with full walkthrough and all items)(1)
- 05. S.T.A.L.K.E.R. 2: Heart of Chornobyl - SaveGame (before choosing between a varta and a monolith)(7)
- 06. Rock Band 3 99% Save Wii(0)
- 07. Dead Rising 2: Off the Record - SaveGame (50 lvl, 5.000.000$, S/A)(0)
- 08. Need for Speed: Undercover - Save Game (4th level of the racer)(0)
- 09. [EU] F.I.S.T.: Forged in Shadow Torch (CUSA28371)(8)
- 10. Ghost Exile: SaveGame (Level 50 with 30,000 money)(1)
- 11. S.T.A.L.K.E.R. 2: Heart of Chornobyl - SaveGame (progress from the Dump to the Boat)(10)
- 12. Cyberpunk 2077: Phantom Liberty - SaveGame (The areas have been cleared.(8)
- 13. Red Dead Redemption 2: Save Game (Chapters 3,4,5 with all bags)(6)
- 14. My Gaming Club: SaveGame (pumped up character) [2.1](0)
- 15. Rock Band 2 99% Save Xbox 360(5)
Latest Tutorials
- 01. PS3 HEN - Audio via a USB headset.(596)
- 02. Stumble Guys | Social Butterfly Achievement(331)
- 03. Last Days of Lazarus Achievement Walkthrough (Xbox/PS)(1,639)
- 04. EDENGATE: The Edge of Life - 100% Trophy/Achievement Guide(2,060)
- 05. Sherlock Holmes Chapter One | Walkthrough | No Commentary(1,659)
- 06. Morbid: The Seven Acolytes | Full Game Walkthrough(2,735)
- 07. Adam Wolfe | Full Game Walkthrough | No Commentary(1,796)
- 08. ALFRED HITCHCOCK: VERTIGO - 100% Walkthrough(2,170)
- 09. SHERLOCK HOLMES THE AWAKENED | Walkthrough | No Commentary(1,531)
- 10. Space Roguelike Adventure | Guide - Cheat Code!(1,756)
- 11. DETECTIVE Stella Porta Case | Trophy & Achievement Guide(1,315)
- 12. Tunic 100% Platinum Walkthrough | Trophy & Achievement Guide(2,021)
- 13. Outbreak: The Nightmare Chronicles Achievement Walkthrough(1,626)
- 14. Full Void 100% - Trophy & Achievement Guide(1,660)
- 15. Outbreak: Lost Hope #Xbox Achievement Walkthrough(2,445)
"Xbox password flaw exposed by five-year-old boy" :: Login/Create an Account :: 115 comments