A network-related or instance-specific error occurred while establishing a connection to SQL Server. The server was not found or was not accessible. Verify that the instance name is correct and that SQL Server is configured to allow remote connections. (provider: Named Pipes Provider, error: 40 - Could not open a connection to SQL Server) Man gets promotions and salary hikes after 'doing nothing' for 5 years at job, Global : Today Indya

Latest News

  • Home
  • Popular quiz app Nametests exposed data of over 120 million Facebook users
Popular quiz app Nametests exposed data of over 120 million Facebook users
Friday, June 29, 2018 IST
Popular quiz app Nametests exposed data of over 120 million Facebook users

Apps appearing in your News Feed promise to tell you a lot, from which celebrity you best resemble to how you will look like after 50 years. In reality, they must have been leaking your private data for years.
 

 
 

Nametests.com, a popular third-party website that offers various quizzes for Facebook users, put private data of about 120 million users at risk for years, a security researcher has disclosed.
 
Inti De Ceukelaire, an ethical hacker, demonstrated how the security loophole worked. He explained in a blog post that he was aiming to discover a flaw in the social network after Facebook introduced the Data Abuse Bounty programme in the wake of the Cambridge Analytica data harvesting scandal.
 
De Ceukelaire focused on NameTests, which is a popular quiz app on the social network, only to discover that the website was fetching personal information of users from a URL and could be accessed by any website. The data was wrapped in a JavaScript progamme that could be shared by any other platform.
 
The hacker further pointed out that NameTests could identify users even after the application was deleted.
 
“I would imagine you wouldn’t want any website to know who you are, let alone steal your information or photos. Abusing this flaw, advertisers could have targeted (political) ads based on your Facebook posts and friends. More explicit websites could have abused this flaw to blackmail their visitors, threatening to leak your sneaky search history to your friends,” he wrote in a post. 
 
Here’s a video demonstration of how the loophole worked.

Should you be worried?
 
De Ceukelaire said he has already alerted Facebook about the security loophole. “At my request, Facebook donated $8,000 to the Freedom of the Press Foundation as part of their Data Abuse Bounty Program,” he said in the post.
 
Responding to the researcher’s claim, Facebook said it has fixed the vulnerability and NameTest’s parent company — Social Sweethearts — has assured that there was no evidence of any personal data being exposed.
 
“It was reported by Inti De Ceukelaire and we worked with the app’s developer — Social Sweethearts — to address the website vulnerability he identified which could have affected Facebook information people shared with nametests.com. To be on the safe side, we revoked the access tokens for everyone on Facebook who has signed up to use this app. So people will need to re-authorize the app in order to continue using it,” Facebook said in a post.
 
“The investigation found that there was no evidence that personal data of users was disclosed to unauthorized third parties and all the more that there was no evidence that it had been misused. Nevertheless, data security is taken very seriously at social sweethearts and measures are currently being taken to avoid risks in the future,” a Social Sweethearts spokesperson told Gizmodo.
 

 
 

How to stop third-party apps leaking your Facebook data
 
After the Cambridge Analytica data scandal, Facebook has released various tools to help users gain control of their private data. For instance, Facebook stops apps from accessing your data after 90 days of non-use by a user. The company has also made it easier for anybody to access privacy tools.
 
If you are using quiz apps like Nametests.com, here’s what you can do to prevent data leak.
 
Launch the Settings menu by clicking the down arrow button located on the top bar of your Facebook homepage.
 
Choose ‘Privacy’ and select ‘Apps’.
 
 
Under ‘Apps, Websites and Plug-ins’ click on the ‘Edit’ button.
 
This feature is enabled by default in order to allow users you use “apps, plug-ins, games and websites on Facebook and elsewhere”.
 
Disable this to stop third-party apps from accessing your Facebook information.
 

 
 
 
 
 

Related Topics

 
 
 

Trending News & Articles

 Article
'Worse than prison': A rare look inside China's detention camps to 'brainwash' Muslims

ALMATY: Hour upon hour, day upon day, Omir Bekali and other detainees in far western China's new indoctrination camps had to disavow the...

Recently posted . 217K views . 1 min read
 

 Article
What The Shape Of Your Belly Button Says About Your Health

If you have payed attention to the belly buttons of people on the beach or the members of your family, you have probably noticed that they have different shapes and...

Recently posted . 10K views . 2 min read
 

 Article
New ‘Langya’ virus hits China as 35 people found infected: How deadly is it?

The Langya henipavirus has a place with a similar group of infections, including Nipah, which is known to kill up to 3/4 of people in extreme cases.

Recently posted . 6K views . 1 min read
 

 Article
Queen Elizabeth Dies At 96: The New Royal Line Of Succession

Queen's death: The eldest of her four children, Charles, Prince of Wales, who at 73 was the oldest heir apparent in British history, became king immediately...

Recently posted . 5K views . 1 min read
 

 
 

More in

 Article
Plank Record Broken by Woman Who Held It For 4 Hours

Superhuman feats of strength attracted the stone age people to each other. And in our times, while the meaning of fitness, strength and exercises has significantly ...

Recently posted. 875 views . 2 min read
 

 Article
Watch: Man Scaled 4 Floors To Save Child, "Real Spiderman", Say People

Mamoudou Gassama's quick climbing to reach the child went viral on social media, with people calling the 22-year-old a real spider man.

Recently posted. 817 views . 1 min read
 

 Article
Apple’s ‘secret team’ working on satellite tech to beam data to devices

Potential success will signal end of dependence on wireless carriers   Apple Inc has a secret team working on satellites and re...

Recently posted. 896 views . 2 min read
 

 Photo
These warning signs will make you ROFL



Recently posted . 2K views
 

 Reviews
Leaseweb hosting review



Recently posted . 4K views . 67 min read
 

 Article
NASA spacecraft approaches asteroid, snaps first pic

The spacecraft is designed to circle Bennu, and reach out with a robotic arm to "high-five" its surface, then return.  

Recently posted. 798 views . 1 min read
 

 Article
‘Human computer’ Katherine Johnson dies at 101

She was the inspiration for the movie Hidden Figures and calculated the flight paths for NASA’s early missions

Recently posted. 800 views . 0 min read
 

 
 
 

   Prashnavali

  Thought of the Day

Stop being afraid of what could go wrong and think of what could go right.
Anonymous

Be the first one to comment on this story

Close
Post Comment
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST


ads
Back To Top