PogoWasRight.org

Menu
  • About
  • Privacy
Menu

Facebook fixes data theft issue

Posted on February 3, 2011July 3, 2025 by Dissent

David Neal reports:

Facebook has fixed a security problem that allowed malicious web sites to access personal user information without explicit permission.

The flaw was bought to the attention of security firm Sophos by student researchers Rui Wang and Zhou Li.

Graham Cluley, senior technology consultant at Sophos, said that the security lapse could let malware spread between users, taking personal data as it goes by impersonating a legitimate site that already has the permission to take information.

“According to Wang and Li, it was possible for any web site to impersonate other sites which had been authorised to access user data, such as name, gender and date of birth,” he said.

“Furthermore, the researchers found a way to publish content on the visiting users’ Facebook walls under the guise of legitimate web sites, a potential way to spread malware and phishing attacks.”

Read more on V3.co.uk.

No related posts.

Category: BreachesOnline

Post navigation

← The UK Information Commissioner’s Office: A case for justifiable assisted suicide
Reps. Barton and Markey Challenge Facebook on Disclosure of Home Addresses, Mobile Phone Numbers →

Now more than ever

Search

Contact Me

Email: info@pogowasright.org

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

Categories

Recent Posts

  • Microsoft’s controversial Recall feature is now blocked by Brave and AdGuard
  • Trump Administration Issues AI Action Plan and Series of AI Executive Orders
  • Indonesia asked to reassess data privacy terms in new U.S. trade deal
  • Meta Denies Tracking Menstrual Data in Flo Health Privacy Trial
  • Wikipedia seeks to shield contributors from UK law targeting online anonymity
  • British government reportedlu set to back down on secret iCloud backdoor after US pressure
  • Idaho agrees not to prosecute doctors for out-of-state abortion referrals

RSS Recent Posts on DataBreaches.net

  • Scattered Spider is running a VMware ESXi hacking spree
  • BreachForums — the one that went offline in April — reappears with a new founder/owner
  • Fans React After NASCAR Confirms Ransomware Breach
  • Allianz Life says ‘majority’ of customers’ personal data stolen in cyberattack (1)
  • Infinite Services notifying employees and patients of limited ransomware attack
©2025 PogoWasRight.org. All rights reserved.
Menu
  • About
  • Privacy