Sunday 22 March 2009

Facebook ignores huge security hole for four months

Watch out for social networking sites in your home and workplace. Be careful how much information you publish as they are becoming the first stop for identity thieves and private investigatiors. always ensure your profiles are 'private'. If possible disable networking sites on your business network, they are bad for business from both a a time and security point of view. Educate your staff and give them some ownership of the process.

Facebook has been sitting on a nasty website flaw that for four months has made its users susceptible to malware and forgery attacks.

The cross-site scripting (XSS) error can be plainly demonstrated here and here. It allows a miscreant to trick a user into believing he is visiting Facebook when the vast majority of the content is being supplied by a website of the attacker's choice. more...

No comments:

Post a Comment