Skip to main content

Facebook and Twitter fail basic security test

Riding off of the coattails of the FireSheep Firefox exploit, Digital Society has studied the basic security functions of 11 popular websites and given them grades. The results are not stellar for most, especially social networking sites Twitter and Facebook, which both received failing grades.

The reasons why they failed get quite technical, but center around the lack of full SSL (Secure Sockets Layer) protection on the sites. One easy way to know if you are on an SSL protected site is if your browser bar says “https://” instead of the standard “http://.” If you are not, then it is possible that your information could be stolen because it is not encrypted. Facebook and Twitter do not encrypt data all the time, a feature that they should implement.

online-security-report-card-facebook-twitter-2010
Image used with permission by copyright holder

There are four basic ways to get hacked (studied here)

If a site doesn’t have SSL browsing support, anyone can see what you’re browsing at any time, but only what you’re browsing currently.

In a partial sidejacking, an attacker gets a hold of a users authentication cookies and gains partial access to their account. An authentication cookie is a small file that sites on your computer, allowing you to revisit a website without re-logging in every time. It tells Facebook: “hey, I’m still the same computer; let me in.” In a partial sidejacking, some of your information is visible to the attacker, but he/she can’t entirely breach your account.

In a full sidejacking, the attacker gets full control over your account, but can’t get your username or password. Usually he/she can do everything except change the password because most sites request that you re-type the old password first. Full sidejacking is scary. In Hotmail, for example, an attacker would be able to read all of your emails.

Finally, in a full hijacking, the attacker gains control over everything in your account and can change anything, including your password. Sites that do not have SSL authentication leave you vulnerable to a full hijacking.

Be careful

Our best advice: be careful where you browse Facebook, Twitter, and other sites with logins. If you’re on public Wi-Fi spot, make sure that it is password protected. This should encrypt your information, making it more difficult for others to hack you.

Editors' Recommendations

Jeffrey Van Camp
Former Digital Trends Contributor
As DT's Deputy Editor, Jeff helps oversee editorial operations at Digital Trends. Previously, he ran the site's…
Best Buy deals: Save on laptops, TVs, appliances, and more
best buy shuts down insignia line smart home products store 2 768x768

One of the best places to shop for almost anything involving electronics says so right in its name: Best Buy. The retail giant has a ton of departments with some of today’s most popular devices, components, and appliances for sale. It also offers a lot of these at a discount, which is certainly what we’re seeing right now. Some of the best TV deals, best tablet deals, best laptop deals, and best phone deals can currently be found at Best Buy, and those are just the tip of the iceberg. We’ve tracked down all of the best deals you can shop at Best Buy right now, so read onward for some gift ideas for yourself or a loved one and for some great ways to save.
Best Buy TV deals

There may be no better place to purchase one of the best TVs than Best Buy. There is almost always some huge savings to find on TVs at Best Buy, and that’s certainly the case right now. You’ll find deals top TV brands like Sony, Samsung, and LG, and more budget-friendly brands like TCL and Hisense are in play, too.

Read more
The best Lenovo gaming laptops you can buy right now
The Lenovo Legion 5i Pro sitting at an angle.

Lenovo is one of the leading manufacturers when it comes to the best gaming laptops. The company’s commitment to innovation is evident in the raw processing power of the latest chips and the precision cooling systems that ensure peak performance.

Even in the design department, Lenovo gaming laptops continue to boast a distinctly industrial look that is universal across its range. They might not be as flashy or flamboyant as something from Asus or Alienware, but there’s a level of sophistication that makes these devices suitable for various settings beyond gaming environments. Here’s a look at some of the best Lenovo gaming laptops if you are planning to buy one.
Lenovo Legion Pro 9i
The Lenovo Legion Pro 9i is a gaming powerhouse boasting top-tier specs, innovative features, and a design that stands out in the crowded gaming laptop arena. The laptop defies expectations with its high-end specifications, including the powerful Intel Core i9-13980HX mobile CPU, an RTX 4090 GPU, and a liquid cooling system. Yes, you read that right, it comes with a built-in liquid cooling solution to deliver the best thermal performance.

Read more
What AMD needs to do to beat Nvidia in 2024
The AMD Radeon RX 7900 XTX graphics card.

In this generation of GPUs, it's not AMD that has the best graphics cards -- it's still Nvidia. AMD's offerings have been strong, but Nvidia trumps it in pure performance, reaching for the stars with the wildly overpriced RTX 4090 while AMD keeps things slightly more reasonable with the RX 7900 XTX.

What can AMD do to turn things around and come out on top in 2024? Will it gain an edge over Nvidia? Signs are pointing to an interesting battle ahead, but for AMD to win, there are a few things that need to happen.
Is AMD as good as it can be in 2023?

Read more