Skip Links

Network World

  • Social Web 
  • Email 
  • Close

(Comma separation for multiple addresses)
Your Message:

Facebook applications at risk from attack

Facebook applications like MyGirlySpace, Ferraritone, Mashpro, CityFireDepartment at risk, researcher says
By Ellen Messmer, Network World
October 14, 2009 12:33 PM ET
  • Share/Email
  • Tweet This
  • Comment
  • Print

A number of Facebook applications, including one called CityFireDepartment, has been hacked and tries to attack site visitors' computers via unpatched Adobe software vulnerabilities, a researcher says.

12 tips for safe social networking

Hacked Facebook accounts are not unusual but "this is the first time I've seen Facebook applications hacked," says Roger Thompson, chief research officer at AVG, who said the firm traced back several hacked Facebook applications to a Russian site which appears to be taking advantage of the compromised Facebook applications to launch attacks against victims' computers based on unpatched Adobe software vulnerabilities.

In addition to CityFireDepartment, which AVG is cautioning Facebook users not to visit until "it's cleaned up," Thompson says. Other compromised Facebook applications also include MyGirlySpace, Ferraritone, Mashpro, Mynameis, Pass-it-on, Fillinthe and Aquariumlife, he says.

The attack "uses an Adobe exploit, and if you're not patched, it's installing the exploit, initially rogue antispyware but probably also a Trojan," Thompson says. AVG has informed Facebook directly about AVG's findings but he noted it's not simple to identify who maintains each of the Facebook applications.

Thompson has chronicled AVG's findings in a blog item. The attack site, which appears to be in Russia, may also be associated with several other Web-based attacks, he adds.

  • Share/Email
  • Tweet This
  • Comment
  • Print

Comments (10)
Login
Forgot your account info?

Website appsBy Anonymous on October 14, 2009, 8:35 pmI belong to several social websites. I've never allowed any of the apps to access my account...now I know why!

Reply | Read entire comment

Thank YouBy Anonymous on October 14, 2009, 10:55 pmThank you for sharing this info with all of us I think most of the Facebook applications are juvenile and on the whole all Facebook applications Suck..

Reply | Read entire comment

Thank YouBy Anonymous on October 14, 2009, 11:03 pmThank you for sharing this info with all of us I think most of the Facebook applications are juvenile and on the whole all Facebook applications Suck..

Reply | Read entire comment

Facebook Needs to get on the backwagonBy Anonymous on October 14, 2009, 11:06 pmand find a way to screen those applications. They are ultimately responsible for it.

Reply | Read entire comment

Farmville Targetd Too?By Anonymous on October 15, 2009, 8:48 amPlease pray it doesnt effect Facebook Farmville. My crops are at harvest and the game is so popular it is ripe for attack. As an ill shut-in, Farmville is my only...

Reply | Read entire comment

Facebook ApplicationsBy Anonymous on October 15, 2009, 9:57 amThis is rediculous. Facebook requires validation/verification (e-mail, phone number, etc) to create/use a user account but yet they can't track who as added an...

Reply | Read entire comment

View all comments

Add comment
Anonymous comments subject to approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.

Videos

rssRss Feed