New Cross-site scripting vulnerability has been detected on Facebook and widely exploited in the mobile API version, this vulnerability allows a malicious user to include JavaScript content into a website and redirect victim’s browser to the prepared URL. I have already saw this flaw in the last few days, many of my friend list are [...]
Posts Tagged ‘Facebook’
Beware of A New XSS on Facebook
March 29th, 2011
Mourad Ben Lakhoua
Posted in Social Networking, Vulnerabilities, Vulnerabilities & attacks, Web Security
Tags: Facebook, XSS, XSS Vulnerability
48 Comments »Does Facebook’s OTP Really Protect Users?
October 18th, 2010
Mourad Ben Lakhoua Today there has been a very interesting post on Security-Faq regarding password security and new Facebook One time password solution. According to Lee: What the team over at Facebook has come up with is a way to get a temporary password at anytime when you are on a wireless network that you do not trust. [...]
Posted in Social Networking, Web Security
Tags: Facebook, fraud, identity, information gathering, Intelius, invasion, owned, passwords, Privacy, profile
14 Comments »Protect Your Privacy
October 3rd, 2010
Mourad Ben Lakhoua Today it is not a secret the amount of information that we can find on internet. This can touch personal and organizational information. Tracking any user is possible over different online services like whois or dnslookup…. Nice example can be found on http://www.attackvector.org/invasion-of-privacy/ , this post demonstrate how it will be possible from receiving a [...]
Posted in Privacy & data protection
Tags: anonyminity, email address, Facebook, fraud, identity, information gathering, Intelius, invasion, linkedin, owned, passwords, Privacy, profile
12 Comments »Facebook Worm Attack Spreading Through Javascript
October 2nd, 2010
Mourad Ben Lakhoua New worm is spreading over Social network. This Malware is attacking Thousands of Facebook users by exploiting a java script gap, exploit forces user to “like” a Facebook page, which then automatically spreads it through a user’s wall by leaving a malicious link on victim’s wall. Now the worm spreads by clicking the link “Shocking! [...]
Posted in Social Networking, Vulnerabilities & attacks
Tags: Facebook, Malware, Security, Social Network, Viruses And Worms, Worm
7 Comments »Vulnerability Makes All Facebook Accounts Exposed
August 13th, 2010
Mourad Ben Lakhoua New Vulnerability has been discovered in facebook that allows an attacker to obtain all users credential on the social network website. By having the email address an attacker can get the name and pictures of victims. The vulnerability can works regardless of the account privacy settings, this mean that even if your account hidden from [...]
Posted in Social Networking, Vulnerabilities, Vulnerabilities & attacks
Tags: Facebook, Privacy, Security
15 Comments »What’s wrong with Twitter?
August 9th, 2009
Mourad Ben Lakhoua On the 6th of August Twitter went down for a pretty long period. After a while a brief message was added on the Twitter status says they’re fighting off a DDOS attack right now. Well the most interesting that the distributed denial-of-service attack also affected Facebook, LiveJournal and Google’s Blogger. The idea of distributed denial-of-service [...]
Posted in Cybercrime & Hacking, Internet, News, Social Networking, Web Security
Tags: Botnet, DDOS, denial of service, DOS attack, Facebook, Google, Security, Twitter, windows
2 Comments »Kuwait: Cybercrooks target over a billion users
May 8th, 2009
Mourad Ben Lakhoua The rapidly increasing interaction of consumers with social online networks, mobile phones and other intelligent devices has brought about significant lifestyle benefits that are under a serious threat from cybercriminals according to an international virus analyst. Addressing the audience of Kuwait’s ICT Security Forum, Stefan Tanase, Malware Analyst, EEMEA Research Center, Kaspersky Lab Global Research [...]















