Social Networking Sites Full of Security Holes
athloi writes "Social networking Web sites such as MySpace.com are increasingly juicy targets for computer hackers, who are demonstrating a pair of vulnerabilities they claim expose sensitive personal information and could be exploited by online criminals."
It wasn't a security hole that allowed someone to blackmail Miss New Jersey. The real danger of these networking sites are dumbasses who post embarassing pictures and blogs about themselves IN THE OPEN, not anything a hacker needs to dig for.
SJW: Someone who has run out of real oppression, and has to fake it.
Is giving your personal data to a company that sells it to spammers or anyone else with a buck when they start going bankrupt a "security hole"?
--
make install -not war
i wouldn't be surprised to find out that most of the hacked accounts had passwords that were something that was listed under the favorite things on a user's profile.
How can anyone expect to keep their myspace login credentials private when they don't even have the login page SSL'd? Those bunch of retards!
"Yet another MySpace security hole" somehow translates to "All social networking sites are full of holes"?
Just a LITTLE bit of stereotyping in the article title I think?
retrorocket.o not found, launch anyway?
What I find funny is the fact that most of the poor souls that go to such sites looking to connect with other people are on a site where the people in charge couldn't care less... I signed up for My(waste of)Space when it showed up on the net because for some people I knew it was the only means to reach them any longer. I canceled my ISP and switched since then, asking the OZ like people running the show to please update my e-mail to reflect this change, more than a year has gone by. Has my e-mail been changed? Nope. Do I waste my time on MySpace anymore? Nope.
When you refuse to acknowledge the community you "support" sub-par quality is what you must expect. Now if those MySpace people want to reach me they have to track me down via other means. To limit yourself to one medium of communication is sad anyway. Pidgin for everybody.
Yes turning off Javascript pretty much invalidates the whole Web 2.0 experience doesn't it? But on the other hand, you open yourself to a bunch of security issues if you don't. Quite the little conundrum....
Badges!?! We don't need no stinking badges!
Well of course they are. Any site that allows random users to post HTML content that then gets embedded in the site's pages (especially as extensively as sites like Myspace, etc allow it) is going to be subject to security flaws. Moral of the story: browse such sites using a secure browser, at least as secure a browser as you can find.