Mar. 25, 2008

News: Facebook Private Photos

When I checked TechMeme this morning (yesterday evening was rather busy), I discovered a reminder that even a large site like Facebook is susceptible to the sort of query string problems I’ve discussed previously. ¬†Kudos to those who found the hole, and to Facebook for apparently fixing it quickly once it received wide attention.

A commenter on ReadWriteWeb, however, pointed out that the hack appeared even before this month – though I’m not positive this is the same hack that the AP referenced. ¬†Either way, this news story serves as another reminder for developers to check their query string inputs.

