Hacker Ron Bowes from Skull Security has created a 2.8GB torrent file which contains the
Facebook account details of roughly 100 million users. That's about 1 in 5 of the half billion accounts the social networking site has, and the
torrent contains URLs for each account, with other personal details contained in the profiles such as phone numbers and email addresses. Bowes created a crawler to troll Facebook's open access directory, where all the information is kept. There's nothing illegal about any of this, of course -- we put our information out there into the public forum that Facebook is, after all -- but there's still something creepy about the idea of someone torrenting our profile. Then again, we have some pretty amazing shots from the Bronx Zoo in there, so we can't really blame them.
Creepy...
@Eminemdrdre00 Its no more Creepier then the average person surfing through 100 million fbook pages... Bore!!!!
@Eminemdrdre00
Ya... real creepy... but with the privacy settings, shouldn't ones profile NOT be accessible in the "open directory" ???
@Plazmic Flame there not..
@Eminemdrdre00 whoever opens a facebook account and posts their full info (phone#, Current City, DOB, hometown, education...etc..etc) DESERVES to get their identity stolen and to be shot for being a dumbass.
@Eminemdrdre00
I sat through a presentation by a Computer Science grad student at UCSB who said he was doing this and analyzing it for research and let Facebook know how easy this was to do. Apparently Facebook didn't care.
@Eminemdrdre00
even worse is the fact that he showed it off today during defcon
@Eminemdrdre00
theres 1/5 chances it could me me & you :O
@armus360
I completely agree. Why would you ever put private information on a public domain? I've never understood that and I've been using Facebook for 4 or 5 years now.
@EagleyeSmith actually the big issue lately is that when you install any of the facebook mobile apps or sign up for SMS updates it puts your phone # on your account publicly unless you actively remove it. Most of the ppl that have their phone #s up on facebook don't even know it is there
In other news... White Pages directory distributed to doorsteps everywhere ends up in trash next to Yellow Pages phone book.
@Steveorevo
change password check.
block everyone else check.
delete facebook if all fails check.
@Eminemdrdre00
change password check.
block everyone else check.
delete facebook if all fails check.
Feels good NOT to use that shithole site.
@ChazClout
i thought i was the only one! yay for not feeling like a total outcast anymore!
@ChazClout There is also a Torrent file that has your name address and phone number its called US Yellow pages Torrent... America+Privacy=Oxymoron. If its not an Pervert old man looking at your families pictures at the beach then its a dirty government Agent Jerking of to your daughters Prom pictures...
@ChazClout
that's easy to accomplish when you have no friends. ZING!
@ZLiberator I think you meant the white pages.
@ChazClout : Everytime I sell stuff on Craigslist and meet with the buyer, I always surprise them with how much information I found about them online using their name, email address, linked in and Facebook pages. :) ...Stop putting your private information online kids. :)
@ChazClout Apparently, you have no idea what it is like being in a shithole... ;)
@BIGGEN
I don't know about you but the people I call friends I actually interact with in a more tangible fashion than people do on Facebook. Like, you know, visit them. Or talk face to face. Or call them.
Then again I don't have thousands of 'friends', I've settled for a dozen or so.
And no, I don't use Facebook either.
@ChazClout
Me too quitting it was glorious!! Start the revolution!
@ChazClout I joined out of peer pressure. Didn't use it much anyway. First deactivated, then found a way to delete my account. Then, add facebook to /etc/hosts.
@One Love
No offense man but you're kind of creepy. I don't think I'd buy anything from you, haha.
@Exodite
lighten up mr. crabbypants
Those girls will be pretty happy about the fact that creepy old guy will be giving them some facetime
Internet security at its best
Who ever downloads this because they want to look through all the profiles really need to re-evaluate the worth of their life.
@Da Bears
/Cancels torrent and cries inside. :(
@Da Bears
I am downloading purely to see if any of my family's info is on there so i can alert them
@Da Bears they DO have a life. THEY are trying to make it even better by making millions off thousands of homer Simpson out there who expose their identities.
@Da Bears So you meen most of engadget readers should re-evaluate their lives, yeah
Go facebook!
@Robdertd63 it's not Facebook. It's "The Face Book"
Great.
The original post, with a link to the torrent, can be found here.
http://www.skullsecurity.org/blog/?p=887
your phone number and email address is only included if you put them in your facebook profile and made it public. if you made it available for everyone to see then this has nothing to do with security at all. you're the one who chose to make it available for everyone.
@grundy923: agreed.
In other breaking news...
"Man compiles 100 million wikipedia articles into .torrent file for sharing... ON THE INTERNET!"
If you're like me and don't have a Facebook, Twitter, Myspace, et al page, reply, please, for roll call.
@Squalor
reporting for duty!
@Squalor You got a Engadget account............
@Squalor Here
@ZLiberator : Yes, I have an Engadget account. The last time I checked, however, I haven't posted pictures of myself and my dog and my friend who is a girl, but I hint at the fact that she's my girlfriend though she's really not, on Engadget. Nor do I post status updates about the minutia of my life.
@ZLiberator
i don't recall hearing about engadget being a social network site... i heard they were a tech blog though! but that's strictly rumor...
@Squalor In the house!
@Squalor
Right here. I hate all that cr@p, Email + phone #s is sufficient.
But this is just a collection of publicly available information, right? I'm guessing that many of the address and phone numbers on public profiles are for business networking purposes. People don't really post their home address on a public profile, let alone a "fiends-only" private profile, do they? Or am I just being naive in that thinking?
@Squalor Oh you do have a girlfriend
@Squalor
I like tech news. "Social networking?" Not so much. I would say that Facebook, etc. are for people who aren't satisfied with their real social life, but my wife uses FB all the time. Hmmm....maybe she isn't satisfied?!?
http://www.nooooooooooooooo.com/
@Squalor YO!
@Squalor didn't you just do the facecrack thing on here right now? the girl you're interested in, mentioned your dog and so on.