WARNING: Facebook Security Hole Affects IOS, Android

Facebook's claim that a security hole in its mobile applications for Apple's iOS for the iPhone and iPad, as well as Android, only affected devices that had been jailbroken was proven to be false, leaving open the potential for theft of identity and other data from users' profiles.

A security hole affects more mobile devices than previously reported, enabling theft of identity and other data from Facebook profiles.

Facebook had claimed that this security hole only affected devices that had their operating systems modified, or jailbroken. That assertion is false, as the vulnerability includes all Android and Apple gizmos.

The security hole was initially discovered by security researcher Gareth Wright, who used iExplorer, a free application that allows users to browse files on their iPhones or iPads as if they were storage devices.

He discovered a plain text Facebook access token — an encapsulation of a user’s identity and personal information — in Omgpop’s Draw Something mobile game.

After

AW+

WORK SMARTER - LEARN, GROW AND BE INSPIRED.

Subscribe today!

To Read the Full Story Become an Adweek+ Subscriber

View Subscription Options

Already a member? Sign in