Facebook flaw allows fake 'like' networks to thrive: Study

Image
IANS San Francisco
Last Updated : Sep 10 2017 | 1:42 PM IST

A security flaw has allowed thousands of Facebook accounts -- both real and fake -- to generate millions of fake 'likes' and comments by entering into "collusion networks", claims new research.

This thriving ecosystem of large-scale reputation manipulation services on Facebook leverage the principle of collusion, said the researchers from the University of Iowa in the US and Lahore University of Management Science in Pakistan.

The researchers found dozens of sites that operate the so-called collusion networks, which rapidly generate users' 'likes' for free, CBS News reported this week.

While the researchers looked at top 50 networks, they believe that many more could exist.

In order to participate, users have to grant the networks wide-ranging access to their accounts, so that those accounts can be harnessed to 'like' others.

The networks exploit code known as OAuth, which allows third-party applications such as Spotify, iMovie and the Playstation Network to access users' Facebook accounts from anywhere between a few hours to even months at a time.

But the exploit can be used for darker purposes than just gathering extra 'likes', the researchers warned.

"In addition to reputation manipulation, attackers can launch other serious attacks using leaked access tokens. For example, attackers can steal personal information of collusion network members as well as exploit their social graph to propagate malware," the researchers said.

The researchers told CBS News that they tracked the collusion networks in the run-up to the 2016 presidential election, but could not say whether the networks were used to boost posts to benefit or hurt candidates.

"We do want to examine the Russia question," study co-author Zubair Shafiq from University of Iowa was quoted as saying.

The collusion networks have now been blocked, according to Facebook.

"We have addressed the activity described in this research and we are no longer seeing it on our platform," a Facebook spokesperson was quoted as saying.

--IANS

gb/vt

Disclaimer: No Business Standard Journalist was involved in creation of this content

*Subscribe to Business Standard digital and get complimentary access to The New York Times

Smart Quarterly

₹900

3 Months

₹300/Month

SAVE 25%

Smart Essential

₹2,700

1 Year

₹225/Month

SAVE 46%
*Complimentary New York Times access for the 2nd year will be given after 12 months

Super Saver

₹3,900

2 Years

₹162/Month

Subscribe

Renews automatically, cancel anytime

Here’s what’s included in our digital subscription plans

Exclusive premium stories online

  • Over 30 premium stories daily, handpicked by our editors

Complimentary Access to The New York Times

  • News, Games, Cooking, Audio, Wirecutter & The Athletic

Business Standard Epaper

  • Digital replica of our daily newspaper — with options to read, save, and share

Curated Newsletters

  • Insights on markets, finance, politics, tech, and more delivered to your inbox

Market Analysis & Investment Insights

  • In-depth market analysis & insights with access to The Smart Investor

Archives

  • Repository of articles and publications dating back to 1997

Ad-free Reading

  • Uninterrupted reading experience with no advertisements

Seamless Access Across All Devices

  • Access Business Standard across devices — mobile, tablet, or PC, via web or app

More From This Section

First Published: Sep 10 2017 | 1:26 PM IST

Next Story