Over 16,529,107 people are on fubar.
What are you waiting for?

Greetings, fellow Fubarians!

This is the first in a series of blogs that I think may be of interest to all. In surfing the internet I've discovered all sorts of fascinating reasons to believe that it's NOT paranoia because they ARE out to get you. Ok, well maybe not. All joking aside, it IS important to know that your 'private' photos on fubar are NOT as private as you might believe.

Ok so you're one of those people who has your private photos in an album that you don't really care who sees them as long as they at least go to the trouble of friending you. So you make the folder NSFW, which in the past would only be visible to friends. Guess what? That changed not too long ago! If your folder is set to 'everyone', that means, well, 'everyone' can see it. INCLUDING NON FRIENDS...and, get this...INCLUDING NON MEMBERS! That's right, fu-friends.

"No problem", you say..."I'll just make my profile visible to 'Friends Only', that way no one can see anything." HOW WRONG YOU ARE. ANY of the photos in your 'Default' and ANY album set to 'EVERYONE' are visible to anyone on the internet, EVEN IF YOU HAVE YOUR PROFILE SET TO FRIENDS ONLY or FUBAR MEMBERS ONLY. The profile is hidden, but the photos are easy to get to.

Don't believe me? Try it! My profile is set to 'visible to fubar members only'. Here's how to do an end-run on the security and see my pics:

-Logout of fubar
-go to www.fubar.com/orcrush.  You'll see the 'this member's profile is set to members only...bla bla bla'
-Click on one of my 'salute' thumbnails. You'll be taken to the actual image and ALL OF MY 'everyone' photos and folders will be visible to you! I have several opened up for this demonstration.

As far as I can tell, the best thing to do is to make sure all of your folders are set to 'friends only' or 'family only'. That way the only photos that are exposed in this manner are the ones in your 'default' folder INCLUDING ANY FLAGGED AS NSFW! Of course you're not supposed to have any NSFW in your default...but it does happen.

Because I'm a security junkie, I'm still searching to make sure there aren't other openings that need to be plugged...so check back and I'll update as things come up.

I have no idea why this security issue exists, only that it does. I'm posting this blog to inform YOU and also to alert the powers that be!

Brought to you as a public service by your friendly neighborhood

>>>>> OC <<<<<

last post
13 years ago
posts
1
views
4,311
can view
everyone
can comment
everyone
atom/rss
official fubar blogs
 8 years ago
fubar news by babyjesus  
 13 years ago
fubar.com ideas! by babyjesus  
 10 years ago
fubar'd Official Wishli... by SCRAPPER  
 11 years ago
Word of Esix by esixfiddy  

discover blogs on fubar

blog.php' rendered in 0.0465 seconds on machine '190'.