Firstpost
  • Home
  • Video Shows
    Vantage Firstpost America Firstpost Africa First Sports
  • World
    US News
  • Explainers
  • News
    India Opinion Cricket Tech Entertainment Sports Health Photostories
  • Asia Cup 2025
Apple Incorporated Modi ji Justin Trudeau Trending

Sections

  • Home
  • Live TV
  • Videos
  • Shows
  • World
  • India
  • Explainers
  • Opinion
  • Sports
  • Cricket
  • Health
  • Tech/Auto
  • Entertainment
  • Web Stories
  • Business
  • Impact Shorts

Shows

  • Vantage
  • Firstpost America
  • Firstpost Africa
  • First Sports
  • Fast and Factual
  • Between The Lines
  • Flashback
  • Live TV

Events

  • Raisina Dialogue
  • Independence Day
  • Champions Trophy
  • Delhi Elections 2025
  • Budget 2025
  • US Elections 2024
  • Firstpost Defence Summit
Trending:
  • Nepal protests
  • Nepal Protests Live
  • Vice-presidential elections
  • iPhone 17
  • IND vs PAK cricket
  • Israel-Hamas war
fp-logo
Facebook rolls out 'Whitehat Settings' to let bug bounty hunters test server-side issues
Whatsapp Facebook Twitter
Whatsapp Facebook Twitter
Apple Incorporated Modi ji Justin Trudeau Trending

Sections

  • Home
  • Live TV
  • Videos
  • Shows
  • World
  • India
  • Explainers
  • Opinion
  • Sports
  • Cricket
  • Health
  • Tech/Auto
  • Entertainment
  • Web Stories
  • Business
  • Impact Shorts

Shows

  • Vantage
  • Firstpost America
  • Firstpost Africa
  • First Sports
  • Fast and Factual
  • Between The Lines
  • Flashback
  • Live TV

Events

  • Raisina Dialogue
  • Independence Day
  • Champions Trophy
  • Delhi Elections 2025
  • Budget 2025
  • US Elections 2024
  • Firstpost Defence Summit
  • Home
  • Tech
  • News & Analysis
  • Facebook rolls out 'Whitehat Settings' to let bug bounty hunters test server-side issues

Facebook rolls out 'Whitehat Settings' to let bug bounty hunters test server-side issues

tech2 News Staff • March 28, 2019, 12:26:51 IST
Whatsapp Facebook Twitter

Facebook’s ‘Whitehat Settings’ options in Facebook, Messenger, and Instagram Android apps.

Advertisement
Subscribe Join Us
Add as a preferred source on Google
Prefer
Firstpost
On
Google
Facebook rolls out 'Whitehat Settings' to let bug bounty hunters test server-side issues

Recently, Facebook organised a Whitehat survey, where the researchers revealed that Facebook security controls, though good for the app, make it harder for bug bounty hunters to test the mobile apps for server-side security vulnerabilities. To fix that, Facebook has announced a new settings option in its apps. Facebook has added a new ‘Whitehat Settings’ option in the Facebook, Messenger and Instagram Android apps (not available on iOS clients yet), which will allow security researchers to bypass Facebook’s Certificate Pinning security mechanism. [caption id=“attachment_6332561” align=“alignnone” width=“1280”] ![facebook-1280](https://images.firstpost.com/wp-content/uploads/2019/03/facebook-1280.jpg) Representational Image.[/caption] As Facebook explains, Certificate Pinning mechanisms are “designed to raise the barrier of entry for an attacker, seeking to break the integrity and confidentiality of the traffic sent from the client (user device) to the server (Facebook’s infrastructure).” The Whitehat Settings can be enabled by visiting the Facebook settings page. You can also find additional details and video tutorials on the website’s support page. You can find the feature under Facebook’s Settings > Settings & Privacy > Whitehat Settings. For Messenger and Instagram too, this feature will be listed in the Settings menu of the respective apps. [caption id=“attachment_6343291” align=“alignnone” width=“1280”] ![The 'Whitehat Settings' option is available on Facebook, Messenger, and Instagram Android apps. Image: Facebook](https://images.firstpost.com/wp-content/uploads/2019/03/facebook-whitehat-setting.jpg) The ‘Whitehat Settings’ option is available on Facebook, Messenger, and Instagram Android apps. Image: Facebook[/caption] Once you enable the feature, you will see that it comes with its own settings, such as a built-in proxy for Facebook Platform API interactions, the ability to disable Facebook’s TLS 1.3 support and the option to use user-installed certificates for easier traffic interception. Do note, Facebook recommends that security researchers turn the Whitehat Settings off as soon as they are done testing the vulnerabilities, as the feature can potentially weaken an account’s overall security posture.

Tags
facebook ethical hackers Whitehat Settings Messenger Whitehat Settings Whitehat hackers
End of Article
Latest News
Find us on YouTube
Subscribe
End of Article

Top Stories

Israel targets top Hamas leaders in Doha; Qatar, Iran condemn strike as violation of sovereignty

Israel targets top Hamas leaders in Doha; Qatar, Iran condemn strike as violation of sovereignty

Nepal: Oli to continue until new PM is sworn in, nation on edge as all branches of govt torched

Nepal: Oli to continue until new PM is sworn in, nation on edge as all branches of govt torched

Who is CP Radhakrishnan, India's next vice-president?

Who is CP Radhakrishnan, India's next vice-president?

Israel informed US ahead of strikes on Hamas leaders in Doha, says White House

Israel informed US ahead of strikes on Hamas leaders in Doha, says White House

Israel targets top Hamas leaders in Doha; Qatar, Iran condemn strike as violation of sovereignty

Israel targets top Hamas leaders in Doha; Qatar, Iran condemn strike as violation of sovereignty

Nepal: Oli to continue until new PM is sworn in, nation on edge as all branches of govt torched

Nepal: Oli to continue until new PM is sworn in, nation on edge as all branches of govt torched

Who is CP Radhakrishnan, India's next vice-president?

Who is CP Radhakrishnan, India's next vice-president?

Israel informed US ahead of strikes on Hamas leaders in Doha, says White House

Israel informed US ahead of strikes on Hamas leaders in Doha, says White House

Top Shows

Vantage Firstpost America Firstpost Africa First Sports
Latest News About Firstpost
Most Searched Categories
  • Web Stories
  • World
  • India
  • Explainers
  • Opinion
  • Sports
  • Cricket
  • Tech/Auto
  • Entertainment
  • IPL 2025
NETWORK18 SITES
  • News18
  • Money Control
  • CNBC TV18
  • Forbes India
  • Advertise with us
  • Sitemap
Firstpost Logo

is on YouTube

Subscribe Now

Copyright @ 2024. Firstpost - All Rights Reserved

About Us Contact Us Privacy Policy Cookie Policy Terms Of Use
Home Video Shorts Live TV