Home | National News | Security flaw lets hackers delete Facebook friends

Security flaw lets hackers delete Facebook friends

Font size: Decrease font Enlarge font

The flaw was reported May 26 by a college student who has written proof-of-concept code that uses publicly available data from Facebook to systematically delete all of a user’s friends

International (The Register) May 21, 2010 -- The Facebook security gaffes keep coming, with the latest being a bug that allows hackers to delete all of a users’ site friends without permission, according to IDG News.

The flaw was reported May 26 by a college student, but some 48 hours later it could still be exploited to delete an IDG reporter’s Facebook friends. The student has written proof-of-concept code that uses publicly available data from Facebook to systematically delete all of a user’s friends. “A malicious hacker could combine an exploit for this bug with spam or even a self-copying worm code to wreak havoc on the social network,” IDG said.

The CSRF, or cross-site request forgery, bug that makes all this possible is the same one reported earlier last week that exposed user birthdays and other sensitive data even when they were designated as private. Facebook representatives had said company engineers had closed the hole, but that pronouncement was premature. The flaw could still be exploited to control the site’s “like” feature, a button users click to endorse ads and other types of content.

Source: http://www.theregister.co.uk/2010/05/21/facebook_bug/

Source: DHS Daily Open Source Infrastructure Report

  • email Email to a friend
  • print Print version
  • Plain text Plain text
Tags
No tags for this article
More from National News
Previous
Chemical bombs exploded at Utah high school
Police in Bountiful, Utah, arrested two teenagers, both high school students, for exploding homemade chemical bombs forcing Bountiful High School to close for 2 hours....
Bomb threats reach University of Pittsburgh chancellor
The DOJ, FBI, and campus police are investigating a bomb threat at the home of the University of Pittsburgh’s chancellor and five other threats on university buildings. ...
Report on UC Davis pepper spray incident
The University of California will host a public meeting to discuss a new report on the pepper spraying of student demonstrators by UC Davis police in November 2011....
Three Tennessee students given court probation
Three students at Lake Forest Middle School in Cleveland, Tennessee pleaded guilty to reckless endangerment charges after manufacturing an explosive device and setting it off in their school’s cafeteria....
image
Gunman Kills 32 on Campus
Day 1 (April 16, 2007) - At least 32 killed in Blacksburg, Virginia, when a gunman opened fire in a dorm and classroom at Virginia Tech University....
image
Guns Recovered at Virginia Tech
Day 2 - The gunman involved in the Virginia Tech shootings has been identified, and the investigation and mourning period are just getting under way....
image
Blacksburg Gunman Profile
Day 2 - As Virginia Tech mourns, questions arise about the shooter, his motives and whether much can be done to prevent similar massacres in the future....
image
Foreign Students React to Shooting
Day 3 - Authorities say the man who killed 32 students before taking his own life was himself a student from South Korea. International students comment....
image
Virginia Tech and Gun-Control
Day 3 - The deadliest single shooting incident in American history has renewed debate about gun-control laws in the United States....
image
Blacksburg Reacts to Shooting
Day 4 - The residents of Blacksburg, Virginia are visibly shaken. Virginia Tech is located in this rural town about 4 hours south of Washington, D.C....
image
PTSD Hits Virginia Tech
Day 4 - Post Traumatic Stress Disorder experts say a few may have difficulty adjusting to normalcy months after the Virginia Tech tragedy....
image
Blacksburg Copes with Aftermath
Day 5 - As more is learned about the 32 victims at Virginia Tech, the small community of Blacksburg, Virginia struggles with the burden of this tragedy....
image
BULLY Film Sparks Movement
Leaders from the worlds of Hollywood, fashion, politics, business and sports support protest against the MPAA started by high school junior Katy Butler. ...
2012 National Schools of Character Finalists
CEP says schools are using character education to shape cultures that encourage high student achievement, mutual respect, and integrity among students, staff, and faculty....
image
Keep Spring Break Safe
The nation's emergency physicians urge teens and young adults to stay safe and practice good judgment while having fun in the sun....
Next