Never miss a story

Get subscribed to our newsletter


×
David Marcus, Facebook Vice President of Messaging Products, watches a display showing new features of Messenger during the keynote address at the F8 Facebook Developer Conference in San Francisco.

As Facebook CEO Mark Zuckerberg discussed about making his platform more secure, a bug in Facebook Messenger allowed websites to gain access to users’ data, including who they have been chatting with, say researchers.

Now fixed by Facebook, the vulnerability in the web version of Messenger allowed any website to expose who you have been messaging, revealed Ron Masas, researcher with cyber security company Imperva, in a blog post late on Thursday.


The researcher reported the vulnerability to Facebook under their responsible disclosure programme and the social media platform mitigated the issue.

In November 2018, Masas and his team discovered a Facebook bug that allowed websites to extract data from users’ profiles via cross-site frame leakage (CSFL) which is known as a side-channel attack performed on an end user’s web browser.


Facebook CEO Mark Zuckerberg. Wikimedia commons

“Browser-based side-channel attacks are still an overlooked subject. While big players like Facebook and Google are catching up, most of the industry is still unaware,” wrote Masas.

Facebook Messenger has over 1.3 billion users globally.

Also Read- Now Users Can Report Tweets Leaking Their Private Information in Detail

Zuckerberg on Thursday said he is working to make Facebook “privacy-focused” like WhatsApp.

The “privacy-focused platform” will be built around principles like private interactions, encryption, reducing permanence, safety and interoperability. (IANS)


Popular

wikimedia commons

Mortgage loan graph

By- Blogger Indifi

EMI is known as equated monthly installments. It is a fixed payment made by the borrower each month to repay the loan amount. The EMI is divided into two loan components. One is the principal amount, and the second is the interest amount. Whether you are applying for a personal loan, business loan, home loan, car loan, or education loan, EMIs are easy to calculate using the EMI loan calculator.

Keep Reading Show less
Photo by Flickr.

Swastika, one of the sacred symbols used by many religions like Hinduism, Jainism, and Buddhism.

The symbol of Swastika is known to signify peace, prosperity, and good fortune in the religious cultures of Eurasia. In fact, this symbol is considered very significant in Hinduism, Buddhism, and Jainism. But, at the same time, it has become one of the most misunderstood religious symbols and has been globally banned in many countries.

The reason why the symbol of Swastika is banned in many countries is because of its association with Adolf Hitler's extreme political ideology, Nazism, as Swastika as its official symbol.

Keep Reading Show less
Pixabay

Since emerging into the public eye with a historic gold medal at the junior world championships in 2016, he has maintained a high level of performance

India celebrated a historic day on August 7, as 23-year-old Neeraj Chopra became the first Indian to win an Olympic gold medal in athletics. In the men's javelin throw event, he achieved his greatest triumph, throwing the javelin 87.58 meters on his second try.

Neeraj Chopra was born on December 24, 1997, in Khandra village in Haryana's Panipat district. He grew up in a Haryanavi family of farmers. He is the brother of two sisters. He graduated from Dayanand Anglo-Vedic College in Chandigarh and is now enrolled in Lovely Professional University in Jalandhar, Punjab, pursuing a Bachelor of Arts degree. Chopra was bullied due to his obesity as a kid, which prompted his father to enroll him in a nearby gym. He then joined a gym in Panipat, where Jaiveer Choudhary, a javelin thrower, noticed his potential and coached him. When the 13-year-old Chopra finished training under Jaiveer for a year, he was enrolled at the Tau Devi Lal Sports Complex in Panchkula, where he began training under coach Naseem Ahmed.

Keep reading... Show less