Monday September 6, 2010 3:09 PM AEST
 
Latest Comments

Facebook user profiles hacked

  • Email a Friend
  • Print Page
Facebook user profiles hacked
By Negar Salek
Mar 31, 2008 2:07 PM | 36 Comments
Tags: facebook | facebook | security | facebook | spam | google | news
Privacy woes continue to plague Facebook this week following the revelation that a spam campaign is hijacking user accounts and posting messages on the Wall feature of user profiles.

 


UPDATE: For information on the latest attacks on social media sites, see our coverage here:
iTnews - Hacker attacks silence Twitter, slow Facebook
CRN - Attacks on social networking sites fade away
SC Magazine - Twitter, Facebook and LiveJournal attacked


According to security vendor Fortinet, the spam messages link to typical spam sites such as online pharmacy shops, one of which has been sourced to a web host that also serves content for several pill pushing sites.

Fortinet’s Global Security Research Team warned that Wall posts containing links must be handled with care and recommends they should not be followed.

“While hijacked accounts have not been proved to be utilised for anything beyond posting relatively innocuous spam 2.0, it is not a stretch to think that links to drive-by-install malicious sites could be injected at some point,” warned Fortinet.

Users should be wary of phishing attempts when confronted by a login page or upon clicking a link contained in a friend's message, carefully check the login page URL, advised Fortinet.

Facebook's "Wall" feature, allows users to post comments on friends' profiles.

Meanwhile, the co-author of the book ‘Facebook — Now What???’, Jesse Stay revealed in a blog post last week that the incident may be linked to an application on Facebook known as Secret Crush.

Stay wrote that the application installed Spyware on peoples’ computers and Facebook was forced to remove it in January but two months later it still seemed to be wreaking havoc.

“Doing a search for “crush calculator” on Facebook revealed a few groups users have set up to apologise to their friends for someone hacking into their account and sending messages about the “Crush Calculator”.

Additionally, just last week security researchers uncovered a new wave of attacks in which profiles on Facebook were used to post images - in this case the images were of child torture.

According to Fortinet, Facebook has been notified and is looking into the issue.

 
Ads by Google
Thoughts on this article? Add a comment below.
Comments: 36
Ha ha ha - that's what you get for putting your personal info on facebook.
SC Magazine - comments icon Posted by visitorAug 15, 2008 3:08 AM
This just happened to a friend not 6 hours ago. Hopefully he can get back into his site. To "visitor," thank you for the total non sequitor. "personal info"? It was not mentioned at all in the article. Thanks for playing though.
SC Magazine - comments icon Posted by Douglas BarnesSep 4, 2008 12:49 AM
I searched for information about Facebook spam and spoof e-mail tonight after my husband's account started posting strange "hi, haven't seen you in a while" to friends that he had just seen and included links to various websites, one of which was obscene and others that were "work from home" advertisements. He was literally in his car driving home from a morning of golf with his brother when these started going out. I knew he did not have a computer (he does not own a laptop) and was meeting most of his friends to plan a high school reunion at our house, some of whom had been spammed by my husband's account. We are some of the old folks turning to Facebook to reconnect with friends and are kind of knew to social networking. My Dad just started a Facebook page 2 months ago and had to shut it down within a week when his computer was attacked by malicious malware that he believes came from Facebook. We are now considering closing down our Facebook accounts. What a nuisance. Our daughter said this was a big problem about a year ago on Facebook and Facebook said they thought they had put a stop to it. This is August 2009 -- the problem is apparently as bad as ever!
SC Magazine - comments icon Posted by Visitor1Aug 3, 2009 1:01 PM
I WARNED EVERYONE I COULD BACK IN MARCH ,ABOUT THE HACKERS INVADING FACEBOOK ACCOUNTS,I SUBMITTED CONSTANT REPORTS TO FB AND A GAME CALLED YOVILLE,WHICH ALL MY GRANDCHILDREN AND FAMILY USED.I WAS TRACKING THE HACKERS FOR AGES THEY EVENTUALLY DESTROYED MY LAPTOP.THEY GET IN YOUR COMPUTER AND CHANGE ALL YOUR SECURITY,BY CLONING,THEY ALSO CHANGE ALL YOUR MENU SETTINGS, USE YOUR CAMERA AND MICROPHONE,THEY CAN ALSO DOWNLOAD DEVICES WITHOUT YOU KNOWING.THEY CAN DO SO MUCH DAMAGE AND COST YOU A FORTUNE,NOT TO MENTION THE STRESS.ITS AKIN TO BEING ROBBED AND VIOLATED.PS YOU CAN HAVE ALL THE SECURITY IN THE WORLD AND DO ALL THE RIGHT THINGS TO KEEP SAFE,BUT THEY ARE TO CLEVER AND CAN CLONE EVERYTHING WITHOUT YOU EVEN NOTICING TILL ITS FAR TO LATE.
SC Magazine - comments icon Posted by angelheartAug 13, 2009 9:28 PM
You best trolling angelheart I DIDNT THEY COULD DESTROY YOUR LAPTOP. thats what you get for using failbook. Windows shall inherit the earth.
SC Magazine - comments icon Posted by N00b $m1t3rAug 16, 2009 7:23 PM
Love the caps and tracking the hackers when you can't even use your caps key correctly. Any social networking site leaks data. You put it up they will find ways of taking it down. Good luck social nubs.
SC Magazine - comments icon Posted by JustInTimeAug 17, 2009 11:12 AM
Yep, seems as though something has gained access to my Facebook account and is spamming my friends on their walls. Have deactivated account. So that's that then.
SC Magazine - comments icon Posted by OllyAug 19, 2009 4:06 AM
hi Anglheart, I think you left your CAPS lock on ! If you got infected, too bad as for everyone else use the proper tools.
SC Magazine - comments icon Posted by MalAug 20, 2009 8:39 AM
N00b $m1t3r: Windows shall inherit the earth? You mean to tell me you haven't noticed the impending rule of Google?
SC Magazine - comments icon Posted by MarkSep 14, 2009 12:21 PM
Why would you deactivate your account? Just change your password. You'd do more to format your hdd than deactivating your account. Obviously your computer is already compromised if spyware or some browser hijack has stolen your facebook password. I don't actually recommend formatting, just saying facebook itself isn't what's invading your machine. With all the free tools out there to secure your pc I don't see how people keep letting this happen to them. If you download and use just spybot, malwarebytes and any of the MANY free antivirus programs you'd have much less to worry about.
SC Magazine - comments icon Posted by oinariNov 15, 2009 9:23 AM
my fb profile was hacked n tht person hd changed all my settings and pws. then i somehow loggd to it n deactivated. bt nw he hs again hacked using another new e mail to log in. now i need to delete it completely. please help me
SC Magazine - comments icon Posted by manshiDec 20, 2009 7:11 PM
Today 6 friends notified me that I was in London and had been mugged and needed them to send them money via Western Union. This all happened the same time. I learned that my e-mail had been changed and my pass word. I found it difficult to communicate with fb. I learned that there is a look a like fb out there too.
SC Magazine - comments icon Posted by Lucille Dec 28, 2009 4:10 PM
This happened to my Facebook account today too, same London story and one friend actually sent the money. I feel so bad, has anyone learned a course of action?
SC Magazine - comments icon Posted by WorriedDec 30, 2009 12:10 PM
has anybody gotten emails exclaiming that Oh my god is this you? from facebook? My wife did and when she tried to open it just took her to a blank page.
SC Magazine - comments icon Posted by markJan 19, 2010 10:40 AM
If the privacy settings gave an option for posting on the walls of others, this wouldn't be a problem. Most of this wall-posting process is automated, so a default of sharing with 'nobody' prevents spam notifications being sent out. And if the password is clearly compromised and not changed then the person is a moron and deserved it anyway. You'd get your house and car locks changed if you knew someone had stolen the key, so why not an electronic account? As far as sending money goes, if you didn't know the person well enough to know they were not in London, you shouldn't be sending money. If you did know them well enough, you would call their mobile?
SC Magazine - comments icon Posted by sighJan 23, 2010 2:33 PM
I can no longer use facebook because they are saying my e mail and my password are not compatable.I have been using this password for months now and had no trouble up to now.
SC Magazine - comments icon Posted by Irene loringFeb 5, 2010 5:19 PM
Twice I've had friend requests from women I don't know, and each time it was all porn on their site. What gives, Facebook?
SC Magazine - comments icon Posted by JamesFeb 15, 2010 1:59 AM
In any group of people there is a percentage that will always be in trouble . I call it the 15% rule Those people are the ones that will NEVER have any anti virus /sense (as in common)or realise that it is up to them to watch out for themselves .15% of any group are just plain hopeless and should be ignored as you can't do a thing with them ! .
SC Magazine - comments icon Posted by PerryMar 15, 2010 11:39 AM
this was my email. Now I cant get into it because it has been hacked. I have in the meantime, set up a new account. I don't have a facebook account either, so sometime in the near future, I will set up antother one. Thank you
SC Magazine - comments icon Posted by BarbaraMar 21, 2010 5:48 AM
Well, i have had emails sent to me containing update your fb password etc etc my norton picks them up and throws them away i dont have a fb so straight away im on it but i also dont allow any one to use fad pages on my computer. keeping in touch they tell me, what happened to personal contact? what i see on others fb it is a place to run people down fight argue and curse others its where all personal stuff is put up and people talk aload of rubbish gosh they even use it as a pick up place.while i know we live in a tech world and i love the gadgets that are available you have to protect yourself dont have fb if you cannot talk to others face to face dont bother you are hiding behind a screen stop loosing yourself and get rid of your face book use your real mouth... we all know the dangers why do it use your computers for the real things in life and go out and visit your friends instead post messages to people on fb most people read them wrong any way and it causes problems for ya
SC Magazine - comments icon Posted by debMar 22, 2010 8:47 AM
I guess this is what just happened to me my friends sending me messages like what are you talking about.... and im replying like what are you talking about..... Im bouts to diss facebook if they dont cut out then bull crap
SC Magazine - comments icon Posted by NICKIE Apr 15, 2010 5:29 AM
So, my husband gets friend request from what I can tell from their thumbnails...1/2 naked girls with stupid names....does this mean he is visiting porn sites and it is somehow linking back to him? I never get creepy friend request, occasionally I get one from someone I dont know, but usually there is a mutual friend...So, why dont I get them and he does?
SC Magazine - comments icon Posted by DeeMay 17, 2010 11:11 AM
mine started doing it just today. so i deactivated it *sigh* w/e
SC Magazine - comments icon Posted by cassieJun 4, 2010 9:08 AM
hi guys, have a problem with my facebook account someone has used my details n passwords against me so i cant log in at all its saying that account has been blocked how do i undo this if possible, plz help thanx
SC Magazine - comments icon Posted by ZoranJul 16, 2010 12:07 PM
After twitter it is facebook now .. Ah !! But thank god this time the hacker dint hacked into locked personal infos. But these infos can be used for spreading malicious codes.. Have u guys got the pirate bay link to download that file .. Now that file will help other Black hats in their jobs. lol..
SC Magazine - comments icon Posted by Ashish KumarJul 30, 2010 2:30 PM
i wana hack ;)
SC Magazine - comments icon Posted by Nicol.Jul 30, 2010 7:19 PM
fghhgffgj
SC Magazine - comments icon Posted by Aleksandra AncevskaAug 2, 2010 9:59 PM
oh yes, another victim of having facebook account hacked but the stupid hacker still has my http address, what a loser !!!!!!!!!
SC Magazine - comments icon Posted by wendyAug 3, 2010 9:51 PM
hacked passwrd
SC Magazine - comments icon Posted by malvikaAug 3, 2010 11:17 PM
asdaksofjasofkasofkaosfkaoskflckasofkaoskfokasf
SC Magazine - comments icon Posted by Robi Aug 5, 2010 10:51 AM
ye le
SC Magazine - comments icon Posted by vijayAug 6, 2010 11:36 PM
t m k c teri----------------------
SC Magazine - comments icon Posted by arzooAug 7, 2010 12:54 AM
I like to joting with you
SC Magazine - comments icon Posted by seng alounAug 10, 2010 7:34 PM
hii i want to hack someone can u help me ?
SC Magazine - comments icon Posted by JowanaAug 22, 2010 3:23 AM
ne sakam fb
SC Magazine - comments icon Posted by Bojan DavidovskiAug 24, 2010 8:13 AM
mi go haknale fb to
SC Magazine - comments icon Posted by miroslav kuznamovskiAug 24, 2010 8:17 AM
Report this comment as offensive:

   * Indicates information we require to process your submission.

Name: *
Email: *
Reason for offense: *
Your report will not be displayed.  
Comments have been disabled on this article.
 
 
Messaging Whitepapers