informa
/
Business
News

Microsoft patches Xbox Live security flaw found by 5-year-old

Microsoft has patched an Xbox Live security flaw which allowed a 5-year-old in San Diego to log into his father's account without knowing the password.
Newsbrief: ABC 10 reports that Microsoft has patched an Xbox Live security flaw which allowed a 5-year-old in San Diego, California to log into his father's account without knowing the password. Earlier this year, Kristoffer Von Hassel's parents discovered that he was logging into his father's Xbox Live account and playing games without their permission. Investigating further, Von Hassel's father -- a security researcher at ServiceNow -- discovered that his son had managed to access his account by entering the wrong password, then bypassing the ensuing password verification screen by submitting a "password" of blank spaces. The family reported the vulnerability to Microsoft. Microsoft responded by fixing the security flaw, acknowledging Kristoffer in the company's March 2014 list of security researchers, and giving the Von Hassel family $50, four Xbox One games and a year of Xbox Live Gold membership. "We're always listening to our customers and thank them for bringing issues to our attention," a Microsoft representative said in a statement to ABC 10. "We take security seriously at Xbox and fixed the issue as soon as we learned about it."

Latest Jobs

Sucker Punch Productions

Bellevue, Washington
08.27.21
Combat Designer

Xbox Graphics

Redmond, Washington
08.27.21
Senior Software Engineer: GPU Compilers

Insomniac Games

Burbank, California
08.27.21
Systems Designer

Deep Silver Volition

Champaign, Illinois
08.27.21
Senior Environment Artist
More Jobs   

CONNECT WITH US

Register for a
Subscribe to
Follow us

Game Developer Account

Game Developer Newsletter

@gamedevdotcom

Register for a

Game Developer Account

Gain full access to resources (events, white paper, webinars, reports, etc)
Single sign-on to all Informa products

Register
Subscribe to

Game Developer Newsletter

Get daily Game Developer top stories every morning straight into your inbox

Subscribe
Follow us

@gamedevdotcom

Follow us @gamedevdotcom to stay up-to-date with the latest news & insider information about events & more