Microsoft reportedly fixes Xbox bug that could have leaked user email IDs through gamer tag
The fix was deployed server-side and there are no additional steps that users need to be taken to stay protected.


The fix was deployed server-side and there are no additional steps that users need to be taken to stay protected.[/caption]As per the report, once users log in to the website, the Xbox Enforcement site creates a cookie file in their browser replete with details about their web session so that the gamer does not have to re-authenticate the next time they visit the site again.Harris revealed that the portal's cookie file contained an Xbox user ID field that was unencrypted. Harris, subsequently edited the XUID field and replaced it with the XUID of a test account he created and had used for testing as part of the bug bounty program.A Microsoft spokesperson revealed that the fix was deployed server-side and there are no additional steps that users need to be taken to stay protected.As per the report, a security analyst working for Microsoft's Security Response Centre, which trials bug reports, revealed that the bug was not covered by the Xbox bug bounty program, but the company still agreed to feature Harris on its Bug Bounty Hall of Fame as a contributor.

High Stakes Game: Steam’s Best of 2023 highlights which games had gamers all excited last year
Netflix subscribers can now finally play GTA trilogy on Android, iOS devices. Here’s how to download
Grand Theft Auto VI Trailer launch: Here’s all the major easter eggs you missed
GTA 6 may launch in Oct 2024, reveals leaked voice message from Take-Two Interactive CEO Strauss Zelnick
Ready Player One: Esports is India’s sunrise sector, set to become a Rs 1,100 crore industry by 2025
