Nov. 6, 2007

Posted by in OpenSocial | 5 comments

RockYou’s Emote on Plaxo

Date: Friday, November 2, 2007

Initial hack: 45 minutes

Vulnerabilities:

  • Able to change current Emote status for any user
  • Able to access Emote history and current status for any user
  • Able to insert HTML, including JavaScript, into Emote pages

Coverage: TechCrunch

Progress: Plaxo has removed Emote from their whitelist.  As of Nov. 6, Emote remains unpatched.

  1. Hi HarmonyGuy,

    Well done! Who better than you would be able to build a wonderful app for Facebook and OpenSocial.
    If you’re interested, you can contact me by email, I’ve got an app idea and ‘m searching for a developer.
    Best regards,
    Jean-Marie

  2. You are obviously a very skilled developer. I am looking to build applications for my website for facebook and open social networking. Looking forward to hearing from you soon.

  3. now it’s at myspace x.x.. Heroes apps

  4. People deserve good life and credit loans or college loan will make it better. Just because people’s freedom is based on money state.

  5. I received 1 st loan when I was a teenager and this supported my family very much. But, I need the term loan again.

Trackbacks/Pingbacks

  1. OpenSocial Hacked Again - [...] now has a blog up where he is writing about his hacks of OpenSocial applications. See it here. He ...
  2. Ajax Girl » Blog Archive » OpenSocial Hacked Again - [...] now has a blog up where he is writing about his hacks of OpenSocial applications. See it here. He ...
  3. NexGen Technology Blog » OpenSocial Hacked Again - [...] now has a blog up where he is writing about his hacks of OpenSocial applications. See it here. He ...
  4. OpenSocial Hacked Again | GOSSIP - [...] now has a blog up where he is writing about his hacks of OpenSocial applications. See it here. He ...
  5. OpenSocial Hacked Again at Geekstr - [...] now has a blog up where he is writing about his hacks of OpenSocial applications. See it here. He ...

Leave a Reply