Oct 05
18
Samy, King of MySpace, security risk to all
MySpace is the fastest growing website on the web. 35 million users, 4th most viewers on the web, up 150% in 3 months. Last week, 19 yr old Samy became everyone's top “friend” on MySpace. Samy wrote a little software worm. The worm added him as a contact to anyone looking at his profile. As well as anyone who then looked at someone's profile who had looked at his profile. And so forth. Samy exploited a weakness in MySpace code for a prank.
“When I saw 200 friend requests after the first 8 hours, I was surprised. After 2000 a few hours later, I was worried. Once it hit 200,000 in another few hours, I wasn’t sure what to do but to enjoy whatever freedom I had left, so I went to Chipotle and ordered myself a burrito. I went home and it had hit 1,000,000″ Samy says.
Years ago, Chris Gilbey and I looked at starting an internet security business that would find holes in enterprise website security, and then fix them.
Samy hit the jackpot. He exposed a whole category of networking and social interaction sites as built on a pack of cards.These sites are now a critical part of the web's future.On many sites, people reveal very intimate details of themselves.
More. Many sites are now actively “talking” to other sites. Flickr linked in to Blog A or site B or group of sites or MySpace; this network interacting with, that network or, the other group of blogs, or those websites.
So Samy's funny prank exposes every issue of security and identity that have been around the net for years. The questions set up a huge roadblock to deep deep acceptance of a seamless, unseen web working at soft touch to consumers.
Because it comes down to this every time. Can you trust this website? The answer from MySpace; not right now.