Facebook source code leaked

This is bad news for the Facebook team. Someone has managed to glean the source code for the site’s home page, and has posted his/her/their findings on a website, cleverly titled Facebook Secrets. This raises significant questions over the security of the site. Facebook is a closed-source system, meaning that the site code is not made readily available to the general public. As such, the individual(s) who managed to track this stuff down did some illicitly. A site like Facebook should, and no doubt does, have security measures in place to stop this sort of ting from occurring. They’ve obviously failed. A breach like this can render the application/site even less secure, exposing further vulnerabilities and weak spots. Let’s hope they manage patch this up before anything goes terribly wrong…

Read

8 Responses to “Facebook source code leaked”

  1. 1
    JJ says:

    That code doesn’t appear to be much more than the profile (or possibly the welcome) page a user would be presented with once they log in.

    I don’t know if seeing this code is a terrible threat. :-/

    Thumb up Thumb down 0

  2. 2
    Blake Ross says:

    Nobody gained access to Facebook; this was the result of a server misconfiguration on our part. See Facebook’s response:

    “Some of Facebook’s source code was exposed to a small number of users due to a bug on a single server that was misconfigured and then fixed immediately. It was not a security breach and did not compromise user data in any way. The reprinting of this code violates several laws and we ask that people not distribute it further.”

    Thumb up Thumb down 0

  3. 3
    Jeff B. says:

    Yea but it still got out.

    Thumb up Thumb down 0

  4. 4
    Galvatron says:

    Facebook go PWN3D

    Thumb up Thumb down 0

  5. 5
    victor says:

    Like JJ said the code seems like nothing major but you would still want to keep it secret. So it will be a big deal.

    Thumb up Thumb down 0

  6. 6
    Sean says:

    I’ve been getting suspicious instant messages from user ‘facebook’ from members of my buddy list who do have facebook, but it doesnt seem legit i could be wrong

    Thumb up Thumb down 0

  7. 7
    Mr.Hopkins says:

    call me a noob or whatever. But I have a question…I’ve never used facebook but I know people who have and do. What exactly is at risk, or what damage can be done from someone knowing the source code? I can obviously figure that a lot of personal data is at risk, but what else?

    Thumb up Thumb down 0

  8. 8
    JJ says:

    Hopkins -

    With access to a products source code any individual (that has the skill) could find security vulnerabilities (assuming there are any). This puts individual users data such as Name, Age, Sex, Religion, Political views, as well as Credit Card and Mailing information at risk.

    Having access to this type of information could also put a companys hardware and network at risk of attack.

    Nonetheless, the material that was accidently published is nothing to be worried about. The material seems to present very little threat.

    Thumb up Thumb down 0

Leave a Reply