Facebook Hack: List of Common Past Vulnerabilities And/Or Privacy Weaknesses

Facebook vulnerabilities list

 

As I told you yesterday, today am I publishing the list of some of the greatest weaknesses that facebook has encountered this year.

There are classed in three categories:
- Facebook major vulnerabilities,
- Thrid party application vulnerabilities and
- “Privacy” weaknesses.

Color legend: Vulnerability impact level -  HIGH - MEDIUM - LOW

Facebook major vulnerabilities:

- 05/2008: XSS vulnerability (source)

- 08/2008: facebook’s index.php source code revealed to the public (source)

 

Third party application vulnerabilities (just some of them):

- 01/2008: Moods application (SQL Injection) (source)

- 02/2008: BOF in PhotoUploader (source)

- 04/2008: Tetris Blockstar score modification (source)

 

“Privacy” weaknesses:

- 02/2008: See tagged photos of anybody (source)

- 03/2008: Enlarge small private profile pictures (source)

- 04/2008: Get access to profile of non-friends (source)

- 06/2008: See things from friends you shouldn’t (source)

 

If I forgot some big vulnerabilities, please let me know and I will add them to the list!

 

.

 

Stega-N-art
http://www.steganart.com

.

.

 

Tags: , ,

Related Post

3 Comments

  1. Comment by Nogueira on April 11, 2009 5:18 pm

    Very nice site, i love it!

  2. Comment by Bernabe on April 11, 2009 10:57 pm

    Very useful information was found here, thank you for your work.

  3. Comment by admin on April 28, 2009 2:25 pm

    Thanks a lot for your nice comments Nogueira and Bernabe.

Comments RSS TrackBack Identifier URI

Leave a comment

SRTH SRTH