Subscriber to our Newsletter

Latest News/Updates and Articles


Receive HTML?
We hate spam as much as you. We will not sell your email address or details.

Facebook and Myspace Unsafe? E-mail
Written by Adam Rowles, on 03-02-2008 13:13
Editor's rating
Average user rating    (0 vote)
Views 1165    
Favoured 62

Myspace and facebook are now putting users at risk of being attacked by hackers. Recently developed code in both Myspace and Facebooks image uploader will have Social Networking users at risk, according to security researchers.

Elazar found this vulnerability in the Aurigma Image Uploader, which is a application that both facebook and Myspace employ to allow users to upload images. It will allow hackers to execute a bug which will unleash malicious code on the users computer, which can lead to system crash/virus/bug/spyware.

This is a flaw in the system, but a flaw that could be very costly. This defect has been published on major hacking sites, such as milw0rm.com and many more. It is only a matter of time attacks are going utilize this flaw and could affect millions of people.

The issue involves an error in the ActiveX contoler, when handling strings to the ‘action’ property.

It has been put on the high priority list and will be looked into asap. I would suggest no-one to use this facility on both facebook and myspace until there is a patch to fix this issue.

Check back as we will keep you updated on this issue.





Reddit!Del.icio.us!Google!Live!Facebook!Slashdot!Netscape!Technorati!StumbleUpon!Newsvine!Furl!Yahoo!Ma.gnolia!Free social bookmarking plugins and extensions for Joomla! websites! title=

Last update: 03-02-2008 13:16

Published in : The News, Latest News
Quote this article in website Favoured Print Send to friend Related articles Save this to del.icio.us

Users' Comments (1) RSS feed comment
Posted by Jason Hendriks, on 23-06-2008 19:56, IP 99.234.33.0, Guest
1. Fearmongering
Well this article was a waste of time. 
 
Facebook doesn't use the Aurigma image uploader, and there is no Microsoft Active-X anywhere on the system. Just Java, and you are required to "trust" the Java applet before it is allowed to troll your hardware for files - an obvious security risk that you, as the user, consented to. A standard HTTP browse and POST file upload is available on the same screen for those who actually care about security, probably 1% or less of the Facebook population.
 
» Report this comment to administrator
» Reply to this comment...

Add your comment



mXcomment 1.0.5 © 2007-2008 - visualclinic.fr
License Creative Commons - Some rights reserved
 
< Prev   Next >