Source: Brian Barrett, Wired.com, December 16, 2017
A variation of a hack called the ROBOT Attack left Facebook susceptible to stolen user accounts until a trio of researchers brought it to their attention.
By exploiting weakness in website encryption that’s been around since 1998, an attacker could pull off a man-in-the-middle attack to steal user information—including passwords that would give the hacker full control of a given account.