Saturday, October 30, 2010

Facebook plans encryption to protect user data

 Facebook has proposed with encryption according to reports, that popular applications, user IDs (LCIDs) available. A report from the Wall Street Journal revealed that data breaches by the 10 most popular apps, millions of users affected. The report led increased concerns about privacy on Facebook, and two U.S. Congressmen have requested more details from the social networking company. The problem is, that certain apps Facebook user IDs (UIDs) broadcast that identify users and used actions on other websites link to a Facebook identity may.

To implement Facebook plans to the Foundation, we lay UIDs encrypted in the next few weeks and then adding support for encryption after in-house developers and the larger Web community, Mike Vernal, a Facebook engineer said in a blog post. "While the initial press reports the implications of sharing a UID greatly exaggerated, we this problem seriously nehmen.Unsere policy already clearly UIDs can be shared with ad networks and data brokers, but we realize that some developers were accidentally this exchange of information", he wrote.


The proposed amendment is aimed at preventing unintended sharing of UIDs, but won't stop deliberate UID Exchange in violation of Facebook policy. "While the unintended sharing of this information on Facebook, this proposal will address the underlying problem data exchange via HTTP header is a Web-wide problem," wrote vernal. "We are happy to help us to work with the Web standards community and browser suppliers in the coming months to address this issue," he said.

Adobe Announces security warning about Shockwave Player vulnerability

 A security consulting has Adobe Systems, a critical vulnerability in Shockwave Player 11.5.8.612 and earlier versions for Windows and Mac. Vulnerability (CVE-2010-3653) could cause that a crash and an attacker control over the affected system to take over, said the company. According to consulting is Adobe not aware of any attacks exploit the vulnerability, although details have publicly announced the vulnerability.

Adobe has not shown when a security patch for the vulnerability to nearby. "Meanwhile Adobe is actively with partners in the security community to enable Exchange of information on this vulnerability, quickly develop detection and quarantine methods is to protect users up a patch available," said the company. Adobe also recommends that users follow the security best practices, by keeping your anti-virus software and definitions up-to-date.

Subscribe To My Podcast