Risk
4/21/2010
02:45 PM
Connect Directly
LinkedIn
Twitter
Google+
RSS
E-Mail
50%
50%

Facebook Opens Up Social Tools To Broader Web

At its developer conference, the soc-net powerhouse let loose plug-ins which will extend its platform throughout the Web and potentially strengthen its hand versus Google.

At its f8 annual developer conference, Facebook on Wednesday introduced three new technologies designed to broaden the social network's ties to external Web sites.

These include: Social Plugins, which allow Web sites to add Facebook-style social interaction using an HTML iFrame; the Open Graph Protocol, a way to let Facebook users add external Web pages to their profiles and to provide developers with access to Facebook analytics data; and the Graph API, a rewrite of Facebook's core developer code to allow easier development on the Facebook platform.

In so doing, Facebook is advancing its alternative to Google's search-based approach to organizing the world's information and making it universally accessible.

Though Google's approach has become more like Facebook's, with a social focus, the two companies remain competitors. As if to prove that, Facebook CEO Mark Zuckerberg announced the beta availability of Docs.com, Microsoft's new online site for creating and sharing Office documents, which happens to support Facebook logins.

Facebook wants people and their social connections, what the company calls the social graph, to inform how information is searched, presented and shared online.

In his keynote presentation, Zuckerberg said that the Web today exists mostly as a series of unstructured links between pages. By providing Web publishers and developers with code that taps the Facebook social graph, he argues that the Web can become more personal and more semantically meaningful.

"Social experiences are a lot more engaging," declared Zuckerberg.

Facebook hopes to bring the tropes and mechanisms of social networking, the Like button and Facebook's login window, for example, to other Web sites.

In short, Facebook's vision is to turn the Web pages into the equivalent of the bar in the television show Cheers -- a place where everybody knows your name.

Were CNN to adopt Facebook's new technology, for example, it could show visitors what CNN content their friends read and shared, something that in Zuckerberg's view would be a better experience than the private viewing experience that exists today.

Zuckerberg said that Facebook was doing away with its past policy that developers' applications are not allowed to store or cache data for more than 24 hours. He also said that the complex permissions menus presented to users of Facebook Connect have been streamlined and combined into a single permissions menu.

With over 400 million users, Facebook could well become the Web's dominant identity and content sharing system. It's certainly easier to drop Facebook code into one's Web pages than to build a login system and social features from scratch.

What's difficult is seeing how this dependence might constrain or disempower Web sites in the future.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Flash Poll
Current Issue
Cartoon
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2014-2363
Published: 2014-07-26
Morpho Itemiser 3 8.17 has hardcoded administrative credentials, which makes it easier for remote attackers to obtain access via a login request.

CVE-2014-2625
Published: 2014-07-26
Directory traversal vulnerability in the storedNtxFile function in HP Network Virtualization 8.6 (aka Shunra Network Virtualization) allows remote attackers to read arbitrary files via crafted input, aka ZDI-CAN-2023.

CVE-2014-2626
Published: 2014-07-26
Directory traversal vulnerability in the toServerObject function in HP Network Virtualization 8.6 (aka Shunra Network Virtualization) allows remote attackers to create files, and consequently execute arbitrary code, via crafted input, aka ZDI-CAN-2024.

CVE-2014-2966
Published: 2014-07-26
The ISO-8859-1 encoder in Resin Pro before 4.0.40 does not properly perform Unicode transformations, which allows remote attackers to bypass intended text restrictions via crafted characters, as demonstrated by bypassing an XSS protection mechanism.

CVE-2014-3071
Published: 2014-07-26
Cross-site scripting (XSS) vulnerability in the Data Quality Console in IBM InfoSphere Information Server 11.3 allows remote attackers to inject arbitrary web script or HTML via a crafted URL for adding a project connection.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
Sara Peters hosts a conversation on Botnets and those who fight them.