Welcome to Joinee Forum
|
Like most online communities you must register to post in our community, but don't worry this is a simple free process that requires minimal information. Registering allows you to:
We look forward to you joining us. |
|
| Guest Message by DevFuse | |
I'm led to believe Facebook is up to it's old tricks again...
#1
Posted 16 November 2011 - 08:29 PM
"Facebook has changed and said nothing (again). Take a look at your URL (top box on your screen.) If you see "http" or just "www", instead of "https", you DO NOT have a secure session & can be hacked. Go to Account Settings - Click Security on the left top corner - click Edit next to Secure Browsing, Check box, click Save. FB has automatically set it on the non-secure setting! Do everyone a huge favor, copy & re-post"
Someone with more web-security knowledge can probably help confirm, but I made my changes.
http://www.ohlaso.co.uk
http://www.rangface.co.uk/wordpress
#2
Posted 16 November 2011 - 10:11 PM
Thank you, Noel.
has given my heart a change of mood and saved some part of a day I had rued.
Robert Frost 1923
#3
Posted 16 November 2011 - 11:12 PM
Think of it this way - you've been surfing the join-me forum for ages under HTTP, with no problems at all.
See http://www.hoax-slay...-browsing.shtml Makes more sense than I do.
This post has been edited by Joinee Marcus: 16 November 2011 - 11:12 PM
www.youtube.com/furiouspanda
www.facebook.com/BFMPunk
www.thegreatfridgeadventure.co.uk
#4
Posted 16 November 2011 - 11:32 PM
#5
Posted 17 November 2011 - 12:12 PM
http://www.ohlaso.co.uk
http://www.rangface.co.uk/wordpress
#6
Posted 17 November 2011 - 12:18 PM
True fact.
#7
Posted 18 November 2011 - 12:18 AM
Joinee Marcus, on 16 November 2011 - 11:12 PM, said:
Think of it this way - you've been surfing the join-me forum for ages under HTTP, with no problems at all.
See http://www.hoax-slay...-browsing.shtml Makes more sense than I do.
Have you ever used Facebook on a publicly-accessible WiFi network (like in a café, an airport, a bookshop, or even someone's home if the WiFi network is insufficiently secured)? If so you were leaving a wide open door for anyone to stroll in and hijack your Facebook account. It's so easy there's even a Firefox extension that will give you a list of account names (and handy identifying pictures) of people who are currently logged into Facebook on the same network as you. Like the look of that girl on her laptop in Starbucks? Well then go right ahead and log into her Facebook account, just by clicking on her picture.
The fact that the password is transfered securely is of no consequence. That prevents you from getting access to the password. But the password isn't sent as part of every request. Instead you use cookies, which identify you just the same way as your password does. This is why you don't have to re-enter your password every time you click a link. The cookie is sent in the clear, so anyone on the same network can read it without having to do any kind of decryption.
Switching to HTTPS means that every request and response is encrypted, so no-one can get at the cookie. There are still ways to get access to your account (usually involving tricking you into providing your password to someone who shouldn't have it). But there are still ways to break into your house even if you lock the door, and that doesn't mean you should leave the door wide open when you head out to work in the morning.
Captain K, on 16 November 2011 - 11:32 PM, said:
This is unlikely to be of any consequence to anyone on this forum. I'm sure it's an issue in many parts of the world, but most people here are in Europe or the US where even if their bandwidth is restricted, it's likely to have such a high limit that you only need to worry about video and audio, not regular web pages (even big ones).
It's also worth pointing out that, last I checked, the official Facebook apps for Android and iOS use plain HTTP for all of their traffic too. So if you use them on an open WiFi network you invite the same issues I described above.
#8
Posted 18 November 2011 - 12:21 AM
MoT
HJCotW
*If that is even your real name
The first, and official currently recognised Heavyweight Joinee Champion of the World.
One of just three people to have represented Join Me in a BBC Four show presented by Victoria Coren.

Help
Sign In »
Register Now!











