Technology
Bug in Facebook Messenger exposed users' data
San Francisco, March 8
As Facebook CEO Mark Zuckerberg discussed making his platform more secure, a bug in Facebook Messenger allowed websites to gain access to users' data, including who they have been chatting with, say researchers.
Now fixed by Facebook, the vulnerability in the web version of Messenger allowed any website to expose who you have been messaging, revealed Ron Masas, the researcher with cybersecurity company Imperva, in a blog post late on Thursday.
The researcher reported the vulnerability to Facebook under their responsible disclosure programme and the social media platform mitigated the issue.
In November 2018, Mass and his team discovered a Facebook bug that allowed websites to extract data from users' profiles via cross-site frame leakage (CSFL) which is known as a side-channel attack performed on an end user's web browser.
"Browser-based side-channel attacks are still an overlooked subject. While big players like Facebook and Google are catching up, most of the industry is still unaware," wrote Masas.
Facebook Messenger has over 1.3 billion users globally.
Zuckerberg on Thursday said he is working to make Facebook "privacy-focused" like WhatsApp.
The "privacy-focused platform" will be built around principles like private interactions, encryption, reducing permanence, safety and interoperability.
Now fixed by Facebook, the vulnerability in the web version of Messenger allowed any website to expose who you have been messaging, revealed Ron Masas, the researcher with cybersecurity company Imperva, in a blog post late on Thursday.
The researcher reported the vulnerability to Facebook under their responsible disclosure programme and the social media platform mitigated the issue.
In November 2018, Mass and his team discovered a Facebook bug that allowed websites to extract data from users' profiles via cross-site frame leakage (CSFL) which is known as a side-channel attack performed on an end user's web browser.
"Browser-based side-channel attacks are still an overlooked subject. While big players like Facebook and Google are catching up, most of the industry is still unaware," wrote Masas.
Facebook Messenger has over 1.3 billion users globally.
Zuckerberg on Thursday said he is working to make Facebook "privacy-focused" like WhatsApp.
The "privacy-focused platform" will be built around principles like private interactions, encryption, reducing permanence, safety and interoperability.

24 seconds ago
US Homeland Security Secy's purse stolen including USD 3000 from Washington DC restaurant

2 minutes ago
Amazed by India's laser-like focus on future, richness of its history and tradition: US Vice President Vance

8 minutes ago
Eye Foundation of America Organizes Fundraising Gala in New Rochelle, New Yor

52 minutes ago
UPSC results declared: Women take top two positions in Civil Services Exam 2024

53 minutes ago
Minister S.M. Nasar, MLA Inigo Irudayaraj to represent Tamil Nadu at Pope Francis' funeral

53 minutes ago
Road rage case: IAF officer provoking pride, sentiments of Kannada-speaking people, says CM Siddaramaiah

54 minutes ago
Ramdev agrees to pull down videos linking ‘Rooh Afza’ with 'Sharbat Jihad'

2 hours ago
Bollywood’s Super Star Hrithik Roshan Ignites Chicago’s Holi Festival

2 hours ago
Anurag Kashyap row: Director apologises to Brahmin community, ensures he will work on his anger

2 hours ago
Martin Scorsese calls Pope Francis’ demise, an ‘immense’ loss for world

2 hours ago
Actress Ramya issues stern warning to entity unlawfully using her video with AI voiceover

2 hours ago
Vahbiz Dorabjee talks about finding love again, says she is looking forward to dating and marriage

2 hours ago
Dia Mirza warns of growing climate risks, cites UNEP report this Earth Day