website statistics

A security enthusiast recently discovered that simply by searching a person through his phone number, anyone can view the entire profile of targeted the user on Facebook's mobile site.
1 Star2 Stars3 Stars4 Stars5 Stars (Rate This)
Loading...

Facebook has been ramping up the security of the social network to ensure the privacy as well as security of user data. However, it seems that the security measures were focused more on the regular website, with the mobile website being ignored on the way. A security researcher has now discovered a major flaw in the latter; one which could compromise the data of millions of users.

Suriya Prakash is a security enthusiast and he is the one who discovered the vulnerability in Facebook’s mobile site. Prakash said that he alerted Facebook about the flaw but the social network giant didn’t attend to his discovery.

According to him, “About a month ago I was just browsing Facebook on my Facebook mobile application and it had an option called ‘Find friends using contacts’ — what it does is that it compares the contact list from your phone to the Facebook database to see if you have any friends that are in your contacts but not on your Facebook account.”

Prakash further says that he realized that by simply searching any person’s phone number, he could view that person’s account. He then wrote a script which automatically populated his phone book and then used this phone book to view the accounts of thousands of people. The script kept running for four days straight without any qualms and only then did Facebook realize the activity that was going on.

Facebook, on the other hand, released a statement saying, “Facebook has developed an extensive system for preventing the malicious usage of our search functionality and the scenario described by the researcher was indeed rate-limited and eventually blocked. We are constantly updating these systems to improve their effectiveness and address new kinds of attacks.”

Courtesy: Hot Hardware

Buy Cheapest Related Product From Amazon.com


WikiLeaks Launches ‘PayWall’ For Accessing Leaked Material, Angers Supporters

HP Turns Down Gartner Report, Claims To Be The Top Global PC Maker
You can also press the left/right arrow key on your keyboard to go to previous/next post
  On October 13, 2012(3 years, 8 months ago.)

You May Also Like:

What Do You Think?

Leave a Reply




Loading Facebook Comments ...

FTC Disclosure: Some of the links of this website are "affiliate links." This means if you click on the link and purchase the item, we will receive an affiliate commission.


Recent Search

Recent Tutorials

If you could not wait to installed the iOS 10 beta version on you iPhone and now struggling for the errors, then this tutorial is for you.
Siri might not understand the question you asked. But you can use Siri by editing the text that you asked & it will give an updated answer.
Perhaps, you are new Apple user and you might have no idea how to change name of your iPhone. Check out this tutorial to change the name.
Check out this tutorial to lock Android phone using PIN code, Password or Pattern. Following the easy steps, you can secure your smartphone.
If you could not figure out yet, how to save and send GIF from your iPhone, then this tutorial is just for you.
Google released 'Ambient Display' feature with Android 5.x Lollipop. Check the tutorial to know how to turn off Android’s Ambient Display .
Have you recently got your 3D Touch iPhone 6s and struggling to delete apps? Go through the tutorial to learn how to delete or move the apps.
Just read this tutorial by yourself and from now on, we will show you, how you can make your iOS device read text loudly for you.
If you're still struggling to take selfie on iPhone then check it out to know how to take photos from far using iPhone's headset as a remote.
Even if your iPhone is locked, people can reply from the lock screen. Check out, how to turn off the quick reply message from locked screen.
Close You Have To Login
User:
Pass:
Login With »Login With TwitterLogin With Facebook