Facebook security flaw revealed

May 06, 2010 03:02 pm | Updated 03:02 pm IST - London

Social networking site Facebook temporarily disabled its chat system after a serious security flaw was revealed, which allowed people to view chats and pending friend requests of their Facebook friends.

The security flaw, discovered on Wednesday by technology website TechCrunch , related to a feature on Facebook that allows users to preview their own privacy settings, telegraph.co.uk reported.

“There is a major security flaw in the site that, with just a few mouse clicks, enables any user to view the live chats of their ‘friends’ Using what sounds like a simple trick, a user can also access their friends’ latest pending friend requests and which friends they share in common. That’s a lot of potentially sensitive information,” the report quoted TechCrunch’s Steve O’Hear as saying.

In a statement, Facebook said: “For a limited period of time, a bug permitted some users’ chat messages and pending friend requests to be made visible to their friends. Our engineers promptly diagnosed it and temporarily disabled the chat function. We also pushed out a fix. Chat will be turned back on across the site shortly.”

The report said recent changes to the way Facebook shares its user’s information with other users and third parties have drawn criticism from privacy watchdogs and U.S. Senators.

0 / 0
Sign in to unlock member-only benefits!
  • Access 10 free stories every month
  • Save stories to read later
  • Access to comment on every story
  • Sign-up/manage your newsletter subscriptions with a single click
  • Get notified by email for early access to discounts & offers on our products
Sign in

Comments

Comments have to be in English, and in full sentences. They cannot be abusive or personal. Please abide by our community guidelines for posting your comments.

We have migrated to a new commenting platform. If you are already a registered user of The Hindu and logged in, you may continue to engage with our articles. If you do not have an account please register and login to post comments. Users can access their older comments by logging into their accounts on Vuukle.