Facebook secure browsing option thwarted
Posted on 08 February 2011.
If you were one of those people who jumped at the secure browsing option offered by Facebook a couple of weeks ago, you might be surprised to know that if you allowed a downgrading of https to http in order to use an application that couldn't work with it, you are probably not browsing securely anymore.

This is obviously a glitch that has to be fixed, and it wouldn't be such a problem if you were notified of the change by Facebook.

As it is, you only get this message when trying to access an application that doesn't work via http: "Sorry! We can't display this content while you're viewing Facebook over a secure connection (https). To use this app, you'll need to switch to a regular connection (http).".

Softpedia reports that a click on the "Continue" button performs the downgrade to http, but also automatically deselects the secure browsing option.

Until this feature is fixed, you would do well to take this fact into consideration when surfing from unsecured networks.






Spotlight

Bash Shellshock bug: More attacks, more patches

Posted on 29 September 2014.  |  As vendors scramble to issue patches for the GNU Bash Shellshock bug and companies rush to implement them, attackers around the world are probing systems for the hole it opens.


Weekly newsletter

Reading our newsletter every Monday will keep you up-to-date with security news.
  



Daily digest

Receive a daily digest of the latest security news.
  

DON'T
MISS

Tue, Sep 30th
    COPYRIGHT 1998-2014 BY HELP NET SECURITY.   // READ OUR PRIVACY POLICY // ABOUT US // ADVERTISE //