The bMighty Blog -- Security

Those Social Networking Apps? Not as Safe as Your Employees Think

Posted by Naomi Grossman Monday, Apr 28, 2008, 11:54 AM ET

There's lots of talk about the time-wasting element inherent in social networking sites like MySpace and Facebook. Along comes yet another reason for a smaller business to block these sites: Security, or lack thereof.

Wired has an interesting article on how the private pages on these sites aren't so private.

Writes Martha Irvine: "People often think Facebook profiles and sometimes MySpace pages, if they're set as private, are only available to friends or specific groups, such as a university, workplace, or even a city. But that's not true if they use applications."

Apparently, if Facebook or MySpace users download applications to enhance their pages (and I defy you to find a user who doesn't), developers of the applications have access to the profiles.

As Irvine asks, what do these "third-parties" do with this access?

She answers: "Sometimes, they use it to connect users with similar interests. Sometimes, they use it to target ads, based on demographics such as gender and age (something Facebook and MySpace also do)."

She notes that both Facebook and MySpace say they hold application developers to "strict standards - and boot them if they don't comply. They also point out that some information, such as e-mail addresses and phone numbers, aren't made available."

But (and this is a big one) Irvine notes that "experts who track online security issues think there's too much personal information flying around out there, with few guarantees that it's safe. They also think social networkers have little understanding where their information goes and how it's used - and as a result, have a false sense of security."

This is where smaller businesses can get into trouble.

Mary Madden, a senior research specialist at the Pew Internet & American Life Project who studies privacy issues, is quoted: "I suspect that there's a whole lot of clicking without a lot of thinking. So much of this sharing happens in a way that users don't see the consequences. It's kind of a big, black hole."

It's not just that your employees are wasting time checking their Facebook and MySpace accounts. What are they putting up there that could make your smaller business vulnerable?

Adrienne Felt, a computer science major at the University of Virginia, researched the site's applications and created her own so she could see how it worked. She is quoted in the article as saying that "there's really nothing stopping them from matching profile information with public records. It also could be sold or stolen. And all of that could lead to serious matters such as identity theft."

Or worse. As the talk of how to use social networking for business increases, proceed – but proceed cautiously.


Hardware & Software | Networking & Communications | Security




This is a public forum. CMP Media and its affiliates are not responsible for and do not control what is posted herein. CMP Media makes no warranties or guarantees concerning any advice dispensed by its staff members or readers.

Community standards in this comment area do not permit hate language, excessive profanity, or other patently offensive language. Please be aware that all information posted to this comment area becomes the property of CMP Media LLC and may be edited and republished in print or electronic format as outlined in CMP Media's Terms of Service.

Important Note: This comment area is NOT intended for commercial messages or solicitations of business.


Spotlight on Solutions
(Sponsored By Cisco)


Explore the bMighty Blog
Most Recent Posts
bMighty Blog Topics
     
bMighty Bloggers
bMighty Blog Roll



Browse by Category
bMighty Server How-To Center

Nuts and bolts info you need to choose and install a server

go

FREE Technology Services Locator!

Search our database of 200,000 solution- provider locations by business activity, technology, vertical market, and customer size. Find a technology partner NOW.

go

Tech Term of the Day: DX9

TechEncyclopedia gives you the meaning of today's word, plus more than 20,000 additional IT terms and definitions.


techweb
Online Communities TechWebInformationWeekLight ReadingIntelligent EnterprisebMightyNetwork ComputingDark ReadingDigital LibraryWall Street & Technology
Byte & SwitchNo JitterInternet EvolutionLight Reading's Cable Digital NewsContentinopleUnStrungBank Systems & TechnologyAdvanced TradingInsurance & Technology
Face-to-Face Events
InteropWeb 2.0 ExpoWeb 2.0 SummitVoiceConBlack HatCSISoftwareEntrprise 2.0 ConferenceGTEC
Mobile Business Expo
InformationWeek 500 ConferenceBuy Side Trading XchangeBuy Side Trading SummitBank Executive SummitInsurance Executive SummitTelcoTVEthernet ExpoOptical Expo
Magazines  
InformationWeekWall Street & TechnologyInsurance & TechnologyBank Systems & TechnologyAdvanced TradingMSDNTechNetSmart EnterpriseThe Architecture JournalDatabase Magazine
 
Research & Analyst Services  
Heavy ReadingInformationWeek ReportsInformationWeek Analytics