wasc-whid@lists.webappsec.org

WASC Web Hacking Incidents Database

View all threads

WHID 2011-22: Zuckerberg's Facebook page hacked

WW
WASC Web Hacking Incidents Database
Wed, Jan 26, 2011 1:44 PM

Sent to you by wasc-whid via Google Reader: WHID 2011-22: Zuckerberg's
Facebook page hacked via Default WHID View on 1/26/11
Entry Title: WHID 2011-22: Zuckerberg's Facebook page hacked
WHID ID: 2011-22
Date Occurred: January 26, 2011
Attack Method: Brute Force
Application Weakness: Insufficient Authentication
Outcome: Disinformation
Attacked Entity Field: Web 2.0
Attacked Entity Geography:
Incident Description: Mark Zuckerberg's Facebook page was hacked on
Tuesday to promote an alternative business plan for the social network
site.
Unknown pranksters defaced the page with a message suggesting that
Facebook ought to allow ordinary users to invest in the site in
a "social way", rather than getting its financing from the banks.
It's unclear how the hack took place, but weak password security by the
team of minions maintaining the page is the most likely explanation.
Mass Attack: No
Reference:
http://www.theregister.co.uk/2011/01/26/zuckerberg_facebook_hack/
Attack Source Geography:
Attacked System Technology: Facebook
Things you can do from here:

  • Subscribe to Default WHID View using Google Reader
  • Get started using Google Reader to easily keep up with all your
    favorite sites
Sent to you by wasc-whid via Google Reader: WHID 2011-22: Zuckerberg's Facebook page hacked via Default WHID View on 1/26/11 Entry Title: WHID 2011-22: Zuckerberg's Facebook page hacked WHID ID: 2011-22 Date Occurred: January 26, 2011 Attack Method: Brute Force Application Weakness: Insufficient Authentication Outcome: Disinformation Attacked Entity Field: Web 2.0 Attacked Entity Geography: Incident Description: Mark Zuckerberg's Facebook page was hacked on Tuesday to promote an alternative business plan for the social network site. Unknown pranksters defaced the page with a message suggesting that Facebook ought to allow ordinary users to invest in the site in a "social way", rather than getting its financing from the banks. It's unclear how the hack took place, but weak password security by the team of minions maintaining the page is the most likely explanation. Mass Attack: No Reference: http://www.theregister.co.uk/2011/01/26/zuckerberg_facebook_hack/ Attack Source Geography: Attacked System Technology: Facebook Things you can do from here: - Subscribe to Default WHID View using Google Reader - Get started using Google Reader to easily keep up with all your favorite sites