NT Compatible
  • News
    • Channels
    • Archive
    • Search
    • Submit
  • Articles
    • Categories
  • Knowledgebase
  • Compatibility
    • Search
  • Links
  • Forums
  • Twitter
Advertisement

Latest News
[ Windows | Linux | Apple ]

· OCZ Vertex 450 Series Solid State Drives announced
· NVIDIA GeForce GTX 780 Reviews Roundup
· Apple's 'iWatch' to come in late 2014 with focus on biometrics, analyst says
· Windows 8.1 laptops with AMDs new chips to support wireless display
· HP $399 touchscreen laptop breaks price barrier
· What's Wrong with the Xbox One? and more
· Microsoft updates its YouTube Windows Phone app with some concessions to Google
· 3 Debian Updates
· The third screen: Will all Windows 8 apps run on Microsoft's Xbox One?
· CentOS-6.4 LiveCD and LiveDVD for i386 and x86_64 released

Upcoming News
· iStarUSA BPU-340SATA Military Grade Drive Enclosure
· A Futurelooks New Flash - Futurelooks Weekly Giveawa?= y 2 of 3 – Win an ADATA XPG v1.0 1866mhz 8GB (4GB x 2) Mem?= ory Kit
· Security issue in livecd-tools causes password issue in Fedora cloud images
· Gigabyte C847N Motherboard @ Hardware Secrets
· An MTN News Flash - MEGATech Reviews – Tep Wireles?= s Pocket WiFi Mobile Hotspot Rental
· AMD Kabini Mainstream APU Notebook Platform Preview @ Legit Reviews
· OCZ Vertex 450 Solid State Drive Review
· [CentOS-announce] CEBA-2013:0858 CentOS 6 coreutils Update
· ZOTAC GeForce GTX 780 Graphics Card Video Review with Stuart Davidson @ HardwareHeaven.com
· [Tech ARP] The NVIDIA GeForce GTX 780 Tech Report

Windows Compatibility
· FaxTalk Messenger Pro V6.0 SP1
· Dragon's Lair 3D
· 3Com Etherlink XL 10/100 PCI NIC/3C905C
· Trident 4dWave DX
· Worms 2
· 3Com Total Control Manager 6.0.23
· Microsoft WebMatrix
· Kaspersky Rescue Disk
· Mozilla Firefox 20.0.1 Final
· Realtek High Definition Audio for 2K/XP/03

New Forum Topics
· shutdown link ?
by: estirwent
on: 2013-05-11 17:46
18 replies, 6456 views

· Laptop keyboard drank soda
by: Zenn
on: 2013-04-30 00:27
1 replies, 699 views

· connecting to to internet with ubuntu
by: Zenn
on: 2013-04-30 00:26
2 replies, 4568 views

· Need Linux-compatible PS/2 expansion card
by: Zenn
on: 2013-04-30 00:26
1 replies, 771 views

· irql_not_less_or_equal blue screen
by: Zenn
on: 2013-04-30 00:25
2 replies, 1150 views

News Channels
· Drivers
· Guides
· Reviews
· Security
· Software
· Press Release
· Windows XP
· Microsoft
· Updates
· Interviews
· Windows Server 2003
· General
· Windows Vista
· Webcasts
· Windows Server 2008
· Windows Home Server
· Windows 7
· Windows 8
· Windows Phone 7

What's New
Login to see an overview of all news stories since your last visit.

Affiliates

Welcome to our website

To take full advantage of all features you need to login or register. Registration is completely free and takes only a few seconds.

NT Compatible » News » January 2013 » Facebook vulnerability allowed silent webcam recording

Facebook vulnerability allowed silent webcam recording

Posted by Philipp Esselbach on: 01/05/2013 12:21 PM [ Print | 0 comment(s) ]

Facebook has fixed a security vulnerability that could be exploited by an attacker to record video from a victim's webcam and then post it to their timeline without requesting their permission.




From MajorGeeks:
The social network operator doesn't seem to have been in any great hurry – security researchers Aditya Gupta and Subho Halder say that they informed the company of the problem four months ago. The two are, however, happy with the outcome, as the reward paid out by Facebook for reporting the vulnerability proved to be significantly more than expected.

The researchers discovered that the video upload feature, which is implemented in Flash, was not properly protected against cross-site request forgery (CSRF) attacks. They developed a demo web page containing an embedded Flash applet – visiting the page displayed the video uploader, but, when clicked on, the uploader recorded a video with the visitor's webcam and posted it to their Facebook timeline without requesting their permission. The only requirement was that the user had to be logged into their Facebook account at the time.


Facebook vulnerability allowed silent webcam recording


Bookmark and Share

Related Stories

04/24/2012 08:51 AM: Facebook buys AOL patents from Microsoft for $550 million by Philipp Esselbach
Facebook today struck a $550 million deal with Microsoft to purchase patents originally belonging to AOL...

01/05/2012 11:16 PM: Ramnit worm heads for Facebook by Philipp Esselbach
Seculert Cyber Threat Management has done a lot of research on the Ramnit worm and recently spotted it targeting Facebook accounts stealing over 45,000 logins mostly from the UK and France...

01/02/2012 09:13 PM: Facebook Phasing Out Support For IE7 by Philipp Esselbach
HardOCP posted a story that Facebook is phasing out support for IE7 because it doesn't display Timeline profiles correctly...

07/25/2011 09:05 PM: Microsoft updates Azure tookit for Apple's iOS to support federation with Facebook, Google and more by Philipp Esselbach
Microsoft rolled out an update to its Windows Azure toolkit for iOS which adds support for identity federation across Google, Yahoo, Live ID, Facebook and ADFS....

07/16/2011 09:11 AM: Activate Facebook Chat in Windows Phone "Mango" by Philipp Esselbach
WPCentral shows you how to activate Facebook Chat in Windows Phone Mango...

05/17/2011 09:16 AM: Microsoft Deepens Bing's Use of Facebook Data by Philipp Esselbach
Microsoft has incorporated more Facebook data into its Bing search results, increasing the competition around social search with Google...

10/14/2010 07:46 AM: Facebook and Microsoft partner on new social-search features by Philipp Esselbach
All About Microsoft posted a news story that Microsoft and Bing are partnering to make Bing search more social...

10/25/2007 11:02 AM: Media Alert: Facebook and Microsoft to Make Announcement by Bob
Details of the announcement will be provided during a press teleconference call. Media Alert: Facebook and Microsoft to Make Announcement ...

08/23/2006 08:59 AM: Microsoft lands Facebook ad deal by Philipp Esselbach
Software maker will provide search and advertising listings to Facebook's 9 million users. Microsoft lands Facebook ad deal...


« Desktop Graphics Card Comparison Guide and more · DSA 2598-1: weechat security update »

NT Compatible » News » January 2013 » Facebook vulnerability allowed silent webcam recording
All products mentioned are registered trademarks or trademarks of their respective owners.
© 1998-2013 Esselbach Internet Solutions - All Rights Reserved. Terms and privacy policy
Powered by Contentteller® Business Edition