logo

Hidden Passenger? How Taboola Routes Logged-In Banking Sessions to Temu

ID: fc1e3ca7-476c-5b89-a540-cdb97be908e7

STIX ID: report--fc1e3ca7-476c-5b89-a540-cdb97be908e7

Feed Name: The Hacker News

Threat Score
60/100

Date Published: 2026-04-16

Date Updated: 2026-04-24

Author: [email protected] (The Hacker News)

...
...

**Executive Summary:** A Taboola pixel embedded on authenticated banking pages performed a 302 redirect to a Temu tracking endpoint with Access-Control-Allow-Credentials, allowing cross-origin cookies and enabling Temu to associate logged-in bank sessions with tracking identifiers without user consent; traditional defenses missed this runtime redirect, creating broad privacy and regulatory risk under GDPR and PCI.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.