Mark Zuckberg's Facebook page hacked to highlight flaw

Programmer tried to alert Facebook to the bug but was ignored and so took more direct action

James Vincent
Monday 19 August 2013 09:07 EDT
Comments
Facebook CEO Mark Zuckerberg prepares to speak at a news conference at Facebook headquarters July 6, 2011 in Palo Alto, California.
Facebook CEO Mark Zuckerberg prepares to speak at a news conference at Facebook headquarters July 6, 2011 in Palo Alto, California. (Justin Sullivan/Getty)

Mark Zuckerberg’s Facebook page was hacked by a Palestinian programmer keen to highlight to the company the flaw he had found in their code.

The exploit allowed Khalil Shreateh to post on Zuckerberg’s wall (see below) even though he was not authorised to do so. Shreateh posted his message after he tried to alert Facebook about the flaw but was told that it was “not a bug”.

“Dear Mark Zuckerberg,” read Shreateh's message. “First sorry for breaking your privacy and post [sic] to your wall, I has no other choice to make after all the reports I sent to Facebook team.”

The reports sent by Shreateh were to Facebook’s a Whitehat program; a bounty scheme that offers rewards to programmers that flag up potential security bugs.

The minimum reward for a successful report is $500 and Facebook states that “there is no maximum reward: each bug is awarded a bounty based on its severity and creativity”. The company claims to have paid out more than $1 million so far.

Minutes after posting on Zuckerberg’s page Shreateh was contacted by Facebook’s security engineers and his account temporarily suspended. Facebook refused to pay Shreateh for flagging up the flaw as by posting on Zuckerberg’s page he had violated the company’s Terms of Service.

Facebook engineer Matt Jones made a public statement, noting that his team “fixed this bug on Thursday.” Jones noted that the Facebook team receives hundreds of reports each day, many of which are “nonsense or misguided”. He did admit however that they “should have pushed back asking for more details here”.

The post by Khalil Shreateh on Mark Zuckberg's Facebook wall. Credit: Khalil Shreateh/Facebook
The post by Khalil Shreateh on Mark Zuckberg's Facebook wall. Credit: Khalil Shreateh/Facebook (Khalil Shreateh/Facebook)

Join our commenting forum

Join thought-provoking conversations, follow other Independent readers and see their replies

Comments

Thank you for registering

Please refresh the page or navigate to another page on the site to be automatically logged inPlease refresh your browser to be logged in