Supersized Facebook Messages Crash Tablets

 By   on 
Supersized Facebook Messages Crash Tablets
Mashable Image
Credit:

Very large messages sent through Facebook's chat client can make applications and devices crash in a form of denial-of-service attack, a security researcher has discovered.

"It has been possible to disconnect three different testing users (three out of three) by sending big enough messages, one of them reported that his tablet restarted after the reception," Buenos Aires, Argentina-based security researcher Chris Russo wrote on the Full Disclosure mailing list.

"The chat module, which at this moment I can't use since it looks like I have been blocked," Russo wrote, "doesn't have any kind of limit in the amount of characters that can be sent."

The exact message that caused the denial-of-service attack hasn't been made public, but Russo did post the code he used with the message deleted.

In comments attached to his posting, Russo wouldn't confirm how big his messages were. He said he kept increasing the sizes by 1,000 characters each time until the exploit worked.

The biggest stories of the day delivered to your inbox.
These newsletters may contain advertising, deals, or affiliate links. By clicking Subscribe, you confirm you are 16+ and agree to our Terms of Use and Privacy Policy.
Thanks for signing up. See you at your inbox!