17 Mar 2010
Security experts are warning of yet another scam to hit Facebook, pointing out that the site is full of fake Fan Pages which could open users up to another avenue of attack.
Sophos senior technology consultant Graham Cluley, himself the victim of a fake fan page, urged Facebook to tighten up its rules on the creation of such sites, as their existence threatens the security of other users.
“Innocent people – friends, acquaintances, and anyone who might follow my blog – are joining the fan page in the belief that they are somehow following me. They have no way of telling that I didn't create this fan page," said Cluley in a blog posting.
"As someone who has received anonymous death threats from Facebook users in the past, I don't see the funny side in someone called Fred West creating a Facebook page about me."
Although the social networking site has rules in place to deal with unauthorised fan pages, and actually should be prohibiting the creation of unofficial ones, the fake Cluley profile has not been removed, despite calls from the real thing for its removal.
Such fake sites can build up user trust, Cluley explained, which can then be exploited for malicious gain. “Imagine if a celebrity with a huge following such as Johnny Depp or Sandra Bullock had a fake fan page set up using their name,” he said.
“An imposter could potentially gather hundreds of thousands of Facebook fans, before one day deciding to update them all with a malicious link or send them a dangerous scam. Alternatively, the victim of a fake Facebook fan page could have their character besmirched by someone choosing to post offensive or defamatory updates in their name.”
Cluley recommended that Facebook insists on some sort of proof that anyone setting up a fan page has a real connection to the firm or company it represents.
“We believe that simple changes made to the site will make Facebook users safer," he added.
Latest stories from Security
Related articles
Related jobs
Poll
What will be the biggest change to corporate technology in the future?
TFL director of Games transport Mark Evers discusses how the public transport network is preparing for this summer's event
Connect with V3.co.uk
The wrong printers, for the wrong tasks on the wrong contracts
Who leads the BI pack and who should we be watching out for?
C#/Java/C++ Algorithmic Developer/Programmer Skill...
We are looking for a talented junior java web developer...
OO Developer/Programmer, Greenfield Trading Software...
C++ Developer - Core Technology - Low latency Real Time...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?
Fans of Graham Cluley?
Can there really be such people out there? Maybe Fred West is just another one of Sophos' own made up characters, like they have done in the past, and they just want the publicity?
Posted by: Mexican't 17 Mar 2010