Risk
4/21/2010
02:45 PM
Connect Directly
LinkedIn
Twitter
Google+
RSS
E-Mail
50%
50%

Facebook Opens Up Social Tools To Broader Web

At its developer conference, the soc-net powerhouse let loose plug-ins which will extend its platform throughout the Web and potentially strengthen its hand versus Google.

At its f8 annual developer conference, Facebook on Wednesday introduced three new technologies designed to broaden the social network's ties to external Web sites.

These include: Social Plugins, which allow Web sites to add Facebook-style social interaction using an HTML iFrame; the Open Graph Protocol, a way to let Facebook users add external Web pages to their profiles and to provide developers with access to Facebook analytics data; and the Graph API, a rewrite of Facebook's core developer code to allow easier development on the Facebook platform.

In so doing, Facebook is advancing its alternative to Google's search-based approach to organizing the world's information and making it universally accessible.

Though Google's approach has become more like Facebook's, with a social focus, the two companies remain competitors. As if to prove that, Facebook CEO Mark Zuckerberg announced the beta availability of Docs.com, Microsoft's new online site for creating and sharing Office documents, which happens to support Facebook logins.

Facebook wants people and their social connections, what the company calls the social graph, to inform how information is searched, presented and shared online.

In his keynote presentation, Zuckerberg said that the Web today exists mostly as a series of unstructured links between pages. By providing Web publishers and developers with code that taps the Facebook social graph, he argues that the Web can become more personal and more semantically meaningful.

"Social experiences are a lot more engaging," declared Zuckerberg.

Facebook hopes to bring the tropes and mechanisms of social networking, the Like button and Facebook's login window, for example, to other Web sites.

In short, Facebook's vision is to turn the Web pages into the equivalent of the bar in the television show Cheers -- a place where everybody knows your name.

Were CNN to adopt Facebook's new technology, for example, it could show visitors what CNN content their friends read and shared, something that in Zuckerberg's view would be a better experience than the private viewing experience that exists today.

Zuckerberg said that Facebook was doing away with its past policy that developers' applications are not allowed to store or cache data for more than 24 hours. He also said that the complex permissions menus presented to users of Facebook Connect have been streamlined and combined into a single permissions menu.

With over 400 million users, Facebook could well become the Web's dominant identity and content sharing system. It's certainly easier to drop Facebook code into one's Web pages than to build a login system and social features from scratch.

What's difficult is seeing how this dependence might constrain or disempower Web sites in the future.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2015-2849
Published: 2015-07-07
SQL injection vulnerability in main.ant in the ANTlabs InnGate firmware on IG 3100, InnGate 3.01 E, InnGate 3.10 E, InnGate 3.10 M, SG 4, and SSG 4 devices, when https is used, allows remote attackers to execute arbitrary SQL commands via the ppli parameter.

CVE-2015-2850
Published: 2015-07-07
Cross-site scripting (XSS) vulnerability in index-login.ant in the ANTlabs InnGate firmware on IG 3100, InnGate 3.01 E, InnGate 3.10 E, InnGate 3.10 M, SG 4, and SSG 4 devices allows remote attackers to inject arbitrary web script or HTML via the msg parameter.

CVE-2015-3216
Published: 2015-07-07
Race condition in a certain Red Hat patch to the PRNG lock implementation in the ssleay_rand_bytes function in OpenSSL, as distributed in openssl-1.0.1e-25.el7 in Red Hat Enterprise Linux (RHEL) 7 and other products, allows remote attackers to cause a denial of service (application crash) by establi...

CVE-2014-3653
Published: 2015-07-06
Cross-site scripting (XSS) vulnerability in the template preview function in Foreman before 1.6.1 allows remote attackers to inject arbitrary web script or HTML via a crafted provisioning template.

CVE-2014-5406
Published: 2015-07-06
The Hospira LifeCare PCA Infusion System before 7.0 does not validate network traffic associated with sending a (1) drug library, (2) software update, or (3) configuration change, which allows remote attackers to modify settings or medication data via packets on the (a) TELNET, (b) HTTP, (c) HTTPS, ...

Dark Reading Radio
Archived Dark Reading Radio
Marc Spitler, co-author of the Verizon DBIR will share some of the lesser-known but most intriguing tidbits from the massive report