Hacker News new | ask | show | jobs
by de6u99er 892 days ago
>Changing the password alone may not be sufficient. The exploit allows the regeneration of authentication cookies even after a password reset, but only once. To fully secure the account, users should log out of all sessions and revoke any suspicious connections.

TL/DR: Change password and log out of all sessions.