Friendster flacks =super geniuses [Jul. 2nd, 2004|10:59 am]
Just me.
I have a policy that you love corporate spokesmen:

Moore's buddy Matt Chisholm chimes in to tell me about a similar hack, a JavaScript app he wrote with Moore that works on Friendster. It mines for information about anyone who looks at his profile and clicks through to his Web site. "I get their user ID, email address, age, plus their full name. Neither their full name nor their email is ever supposed to be revealed," he says.

Notified of the security holes Moore and Chisholm exploit, Friendster rep Lisa Kopp insists, "We have a policy that we are not being hacked." When I explain that, policy or no, they are being hacked, she says, "Security isn't a priority for us. We're mostly focused on making the site go faster."

[User Picture]From: whod81
2004-07-03 09:40 pm (UTC)
honestly i don't think this is a friendster security hole. its the person's WEB BROWSER that gives up this information.... not friendster.

its also very very common.
(Reply) (Thread)