You know all those apps y'all are playing with on Friendface? (Farmville, for instance, just leaps off the page[1])
Check here to find out how secure they are:
http://theharmonyguy.com/
I mean, you'd be, I don't know, a prize lackwit to use the same p/w / username combination on Friendface as on Paypal or your online banking, Amazon, webmail...
... And as for passwords of the form [dictionary word][number]...
Bonus URL: http://countermeasures.trendmicro.eu/two-more-rogue-facebook-apps-linked-to-fucabook-scam/
[1] ... And has apparently been secured.
Check here to find out how secure they are:
http://theharmonyguy.com/
I mean, you'd be, I don't know, a prize lackwit to use the same p/w / username combination on Friendface as on Paypal or your online banking, Amazon, webmail...
... And as for passwords of the form [dictionary word][number]...
Bonus URL: http://countermeasures.trendmicro.eu/two-more-rogue-facebook-apps-linked-to-fucabook-scam/
[1] ... And has apparently been secured.
no subject
Date: 2009-09-04 11:41 am (UTC)no subject
Date: 2009-09-04 11:44 am (UTC)no subject
Date: 2009-09-04 01:05 pm (UTC)no subject
Date: 2009-09-04 11:45 am (UTC)Ah well. I do enjoy LivingSocial...
no subject
Date: 2009-09-04 11:57 am (UTC)FB does go 'You are allowing this application access to yr personal info' when you fire one up for the first time, so it's not as if you're not warned. Although that's more or less meaningless because most people click away on dialog boxes like rats in Skinner boxes while shouting 'Stupid computer!'
Me, I'm a professional paranoid unix curmugeon and generally don't trust app-developers.
no subject
Date: 2009-09-04 12:31 pm (UTC)Or, you trust that the app-writer isn't evil.
Hence, ditto the PPUC.
(It doesn't matter how many times you tell people, they still install "what fart are you?" on FarceCock.)
no subject
Date: 2009-09-04 01:06 pm (UTC)no subject
Date: 2009-09-04 04:14 pm (UTC)H
no subject
Date: 2009-09-04 12:14 pm (UTC)In the end, running an app on facebook is much safer than running an app on, say, your computer surely?
no subject
Date: 2009-09-04 01:08 pm (UTC)Me, I just block all FB apps. It meant I had to give up the 'where I've been' map thingy, but I think I'll live. As for the rest, I'm positively happy that I can't have snowballs and other crap sent at me.
no subject
Date: 2009-09-04 01:13 pm (UTC)Hmm... I think the second not the first is my experience. Then again, I'm pretty cavalier about the whole thing too -- what's the worst that could happen -- it'll email my bank account passwords to random Nigerians, insult everyone in my address book and then delete my data. Life's too short to worry about this so what the hell, install "dodgylooking.exe" and hope.
Me, I just block all FB apps.
I went that step further by not signing up for facebook. Like Windows Vista I'm thinking "i'll skip this one and wait for the next 'must have' social network".
no subject
Date: 2009-09-04 01:16 pm (UTC)I use FB a bit, mostly for the photo sharing, but its not a lot of use for much else.
no subject
Date: 2009-09-04 01:21 pm (UTC)no subject
Date: 2009-09-04 05:57 pm (UTC)no subject
Date: 2009-09-04 06:27 pm (UTC)no subject
Date: 2009-09-04 01:17 pm (UTC)I think it's conceptually different. A FB thingy is on a far-away computer and hey, look, it's just a pretty thing that sends my friends presents. What harm could that do?
On yr home box, you can be offered nudie-prod films that you can look at if you just download this new codec-pack. In theory you'll have AV or anti-spyware code running to stop it all going Horribly Wrong, or a firewall to warn you about code making outbound connections. However, we're back to 'Nevermind that dialog box thing, show me the nudie-prod pics!'
no subject
Date: 2009-09-04 01:23 pm (UTC)I didn't hear about the FB "virus" -- I guess it was the same sort of idea.
no subject
Date: 2009-09-04 01:07 pm (UTC)no subject
Date: 2009-09-04 01:14 pm (UTC)(*) as in, "better thought out than most Enterprise stuff in the same slot (see "LDAP lookups for authentication")
no subject
Date: 2009-09-04 01:22 pm (UTC)Oh God.
no subject
Date: 2009-09-04 02:08 pm (UTC)no subject
Date: 2009-09-04 02:16 pm (UTC)I've taken to answering those sorts of question with 'No. Kerberos.' and then providing worked examples for java/perl/apache/radius/weenix/solaris.
no subject
Date: 2009-09-05 11:02 am (UTC)no subject
Date: 2009-09-05 11:10 am (UTC)no subject
Date: 2009-09-04 01:25 pm (UTC)*Or rather they had an impressive client list of household names which may or may not be the same thing.
no subject
Date: 2009-09-04 02:10 pm (UTC)