Skip to main content

Facebook and Twitter fail basic security test

Riding off of the coattails of the FireSheep Firefox exploit, Digital Society has studied the basic security functions of 11 popular websites and given them grades. The results are not stellar for most, especially social networking sites Twitter and Facebook, which both received failing grades.

The reasons why they failed get quite technical, but center around the lack of full SSL (Secure Sockets Layer) protection on the sites. One easy way to know if you are on an SSL protected site is if your browser bar says “https://” instead of the standard “http://.” If you are not, then it is possible that your information could be stolen because it is not encrypted. Facebook and Twitter do not encrypt data all the time, a feature that they should implement.

online-security-report-card-facebook-twitter-2010
Image used with permission by copyright holder

There are four basic ways to get hacked (studied here)

If a site doesn’t have SSL browsing support, anyone can see what you’re browsing at any time, but only what you’re browsing currently.

In a partial sidejacking, an attacker gets a hold of a users authentication cookies and gains partial access to their account. An authentication cookie is a small file that sites on your computer, allowing you to revisit a website without re-logging in every time. It tells Facebook: “hey, I’m still the same computer; let me in.” In a partial sidejacking, some of your information is visible to the attacker, but he/she can’t entirely breach your account.

Recommended Videos

In a full sidejacking, the attacker gets full control over your account, but can’t get your username or password. Usually he/she can do everything except change the password because most sites request that you re-type the old password first. Full sidejacking is scary. In Hotmail, for example, an attacker would be able to read all of your emails.

Finally, in a full hijacking, the attacker gains control over everything in your account and can change anything, including your password. Sites that do not have SSL authentication leave you vulnerable to a full hijacking.

Be careful

Our best advice: be careful where you browse Facebook, Twitter, and other sites with logins. If you’re on public Wi-Fi spot, make sure that it is password protected. This should encrypt your information, making it more difficult for others to hack you.

Jeffrey Van Camp
Former Digital Trends Contributor
As DT's Deputy Editor, Jeff helps oversee editorial operations at Digital Trends. Previously, he ran the site's…
This Acer Predator gaming PC with RTX 4070 Ti Super is $350 off
The side profile of the Acer Predator Orion 5000 gaming PC.

You should be careful if you're thinking about upgrading with gaming PC deals, as not all machines are worth your hard-earned money. Here's one that we highly recommend: the Acer Predator Orion 5000 at $350 off from Best Buy, which brings its price down to $1,750 from $2,100. It's still not what you'd call affordable after that discount, but this is the type of machine that you will never regret buying. You're going to want to complete your transaction for it as soon as possible though, as there's no telling when the offer expires.

Why you should buy the Acer Predator Orion 5000 gaming PC
The Acer Predator Orion 5000 challenges the best gaming PCs with specifications that will let you play the best PC games at their most demanding settings. It's powered by the 14th-generation Intel Core i7 processor and the Nvidia GeForce RTX 4070 Ti Super graphics card, along with 32GB of RAM that our guide on how much RAM do you need says is the sweet spot for high-end gamers. The gaming desktop also comes with Windows 11 Home pre-loaded in its 2TB SSD, which will provide enough storage space for multiple AAA titles with all their necessary updates and optional add-ons.

Read more
Grab this Lenovo Legion gaming PC while it’s under $1,000
The Lenovo Legion Tower 5i Gen 8 gaming PC on a white background.

You don't need to spend more than $1,000 in upgrading your gaming desktop, as there are gaming PC deals out there with huge discounts on powerful machines. You won't have to do the searching yourself though, as we've done that for you -- check out the Lenovo Legion Tower 5 Gen 8, which is available with a 30% discount from Lenovo that drops its price from $1,330 to only $930. There are only limited stocks for this computer though, so you have to hurry with your purchase if you want to secure the $400 in savings.

Why you should buy the Lenovo Legion Tower 5 Gen 8 gaming PC
The Lenovo Legion Tower 5 Gen 8 is an affordable gaming desktop that's built similar to the Lenovo Legion Tower 5i, which appears in our list of the best gaming PCs as our favorite option for below $1,000. The major difference is that the Lenovo Legion Tower 5 Gen 8 is powered by AMD -- the AMD Ryzen 5 7600 processor, to be exact, alongside the AMD Radeon RX 7600 graphics card and 16GB of RAM that's the best place to start for gaming, according to our guide on how much RAM do you need. With these specifications, you'll be able to play the best PC games on this gaming PC without any issues.

Read more
The RTX 5080 might prove its worth on upcoming gaming laptops
RTX 50 laptop prices.

With only a month to go before Nvidia’s new RTX 50-series equipped laptops go on sale, recent leaks have provided an early look at the performance of the RTX 5080 laptop GPU. According to a 3DMark Time Spy listing on Bilibili, the GPU seemingly offers a notable uplift in synthetic benchmarks compared to its predecessor, the RTX 4080.

The RTX 5080 scored 21,948 points in the 3DMark Time Spy graphics test, surpassing the RTX 4080’s average score of 17,601 points (as pointed out by Notebookcheck)—a 24% performance increase. Considering that the desktop variant of the RTX 5080 is about 10-15% more powerful than the desktop RTX 4080, the laptop variant seems to offer a considerably better uplift. At least, from what the early benchmark suggests. It also puts the RTX 5080 laptop in the same league as the RTX 4090 laptop.

Read more