Share

Related Links

Related Stories

  • Facebook hits back at hacked Groups claims
    Facebook hit back at a grassroots digital privacy group this week, after it criticized the social media giant's handling of its Groups functionality. Control Your Info, a group hoping to highlight information privacy flaws in social media applications, revealed that it is possible for anyone to take over ownership of a Facebook group that has no administrators.
  • Privacy rankings: LinkedIn and Bebo high, Facebook and MySpace average, Badoo low
    Cambridge academics have revealed that social networks that promote their security controls are likely to deter users from joining, and as a result privacy guidelines are inaccessible.
  • Facebook plugs hole in profile security
    Facebook has plugged a major security hole that researchers say enabled any member of the site to view other users' personal information.
  • Conficker and Facebook / Twitter attacks dominate Q1 email threats
    The Conficker worm and attackers’ social engineering techniques exploiting users on Facebook, Myspace and Twitter, dominated the email threats in the first quarter (Q1) of 2009, according to identity-based unified threat management (UTM) solutions provider Cyberoam and its Israeli messaging and web security partner Commtouch.
  • Facebook applications exposed as security risk
    Speculation on the security of social networking has increased amid reports that applications on Facebook are capable of collecting personal information.

Top 5 Stories

News

Facebook publishes chat messages by mistake

06 May 2010

Social networking giant Facebook temporarily shut down its live chat service this week, after a security flaw caused the site to begin showing some users' chat messages to their other contacts.

The security bug existed within the Facebook 'Preview My Profile' feature, which lets users type in the name of someone on their friends list to see how their profile would appear to that user. The feature accidentally gave users a look at the other user's profile, displaying their live Facebook chat conversations.

A video posted to the popular website TechCrunch showed a user selecting the Preview My Profile feature on Facebook, and then selecting one of the people from his friends list. He was then able to see that user's live chat messages, and could also look at their pending friend requests.

"For a limited period of time, a bug permitted some users' chat messages and pending friend requests to be made visible to their friends by manipulating the 'preview my profile' feature of Facebook privacy settings," said Facebook in a statement explaining the problem. "When we received reports of the problem, our engineers promptly diagnosed it and temporarily disabled the chat function. We also put out a fix to take care of the visible friend requests, which is now complete. Chat will be turned back on across the site shortly. We worked quickly to resolve this matter, ensuring that once the bug was reported to us, a solution was quickly found and implemented."

News of the flaw struck just as the magazine Consumer Reports published its State of the Net 2010 report, revealing that more than half of Facebook and MySpace users surveyed had posted risky personal details about themselves online. The survey found that 1300 of the 2000 US households included in the study used social networks, which is about twice as many as a year ago. Fourty percent had posted their full birth date, potentially exposing them to identity theft. Seven percent had posted their street address on their profile, while 3% had revealed times when they would be away from home. One quarter posted photos of their children on the site, and an eighth had included the names of their children in the captions.

This article is featured in:
Internet and Network Security

 

Comment on this article

You must be registered and logged in to leave a comment about this article.