Want to read Slashdot from your mobile device? Point it at m.slashdot.org and keep reading!

 



Forgot your password?
typodupeerror
×
Facebook Security Social Networks IT

Facebook Employees' Laptops Compromised; User Data Believed Safe 75

Trailrunner7 writes "Laptops belonging to several Facebook employees were compromised recently and infected with malware that the company said was installed through the use of a Java zero-day exploit that bypassed the software's sandbox. Facebook claims that no user data was affected by the attack and says that it has been working with law enforcement to investigate the attack, which also affected other unnamed companies. Facebook officials did not identify the specific kind of malware that the attackers installed on the compromised laptops, but said that the employee's machines were infected when they visited a mobile developer Web site that was hosting the Java exploit. When the employees visited the site, the exploit attacked a zero-day vulnerability in Java that was able to bypass the software's sandbox and enable the attackers to install malware. The company said it reported the vulnerability to Oracle, which then patched the Java bug on Feb. 1."
This discussion has been archived. No new comments can be posted.

Facebook Employees' Laptops Compromised; User Data Believed Safe

Comments Filter:
  • by Anonymous Coward on Saturday February 16, 2013 @10:35AM (#42921583)

    you use windows as your dev environment

  • by Anonymous Coward on Saturday February 16, 2013 @10:38AM (#42921597)

    but who's gonna protect people's data from Facebook itself?

  • Safe? (Score:5, Insightful)

    by DoofusOfDeath ( 636671 ) on Saturday February 16, 2013 @10:39AM (#42921599)

    Given Facebook's MO, users should assume that anything Facebook, Inc. had access to is already in the hands of people you can't trust.

    Them being hacked is pretty irrelevant.

  • Useless articles (Score:4, Insightful)

    by Anonymous Coward on Saturday February 16, 2013 @11:02AM (#42921707)

    What's the point of these articles that announce that so and so company's systems have been hacked? They never contain any forensic information about the exploits other than to loosely identify the vulnerable software the bad guys used to get into the system. No identification of the malware installed, no identification of the OS's the laptop were running, no identification of any antivirus products that turned out to be completely useless in stopping the attacks. IOW, no goddamn information that would be useful to anyone who wanted protect themselves from attack, or at least detect whether their system were already compromised.

    The lack of forensic details about the attack provided by Facebook or any of the other companies hit with the java exploit causes great doubt about their claims that no user data was accessed.

  • by drankr ( 2796221 ) on Saturday February 16, 2013 @11:30AM (#42921849)

    How was it trolling? Why doesn't the article state what OS those laptops were running? Hmm? Because it's the most insecure OS known to mankind, Windows, and it doesn't even have to be said any longer? Or because the writers are pathetically unprofessional and are deliberately withholding the facts here? Either way, I don't know.

  • by Anonymous Coward on Saturday February 16, 2013 @11:36AM (#42921881)

    SMART people don't use Facebook and smart people ARE NOT INTERESTED
    IN FACEBOOK.

    How much does Facebook PAY you sorry dickeating morons to continue
    to post drivel about Facebook every fucking day ?

    Do us all a favor, Timothy, and drink some Drano.

  • "User Data Safe" (Score:3, Insightful)

    by Mark Rawls ( 2648691 ) on Saturday February 16, 2013 @05:44PM (#42923875) Homepage
    I think that's the first time that the phrases "user data believed safe" and "Facebook" have been uttered in the same sentence.

The hardest part of climbing the ladder of success is getting through the crowd at the bottom.

Working...