Archive for March, 2008

Microsoft’s Facebook Export

Thursday, March 27th, 2008

Uno de Waal noted yesterday that Microsoft’s new contact exchange system lets you export e-mail addresses from Facebook, a feature not available to other developers and not available in any other form to users.
Intrigued by this new setup, I checked the code to find out what exactly was happening.  Microsoft’s site loads a Facebook iframe […]

News: Facebook Private Photos

Tuesday, March 25th, 2008

When I checked TechMeme this morning (yesterday evening was rather busy), I discovered a reminder that even a large site like Facebook is susceptible to the sort of query string problems I’ve discussed previously.  Kudos to those who found the hole, and to Facebook for apparently fixing it quickly once it received wide attention.
A commenter […]

SMUG Facebook Challenge

Saturday, March 1st, 2008

You may have heard about the $100 hacking challenge issued by social media instructor Lee Aase.  You may have also expected me to take a stab at it.  You may have even thought I would win it.
You’d almost be right.
A friend sent me a link to the challenge the day Lee posted it, and by […]

Checking the security and privacy of social networking applications, white hat style…