Facebook Flaw: Administrators
<< by Sarah Lokitis on July 20th, 2011
Facebook exposed: Even if you remove administrators to your Facebook page, they still may have access to edit, change, or delete apps as developer administrators.
Last week, @ReneeRevetta and I were researching and experimenting with Facebook Iframes to create customized landing pages and tabs. I went onto the Facebook developer page and noticed I was listed as an administrator of a Facebook page I had access to three years ago. I am not currently an administrator on the page on the Facebook interface, but am listed as an administrator on the Facebook developer page. Hmm… something is not right. This means Facebook has continued to grant me access to development and create new tabs, applications and landing pages for a page that I am no longer an administrator for on the Facebook interface. Potentially even worse, I still have access to delete apps at will. In my case, I was an intern for the company and was happily employed. However, for the case of a disgruntled former employee, this could be a major issue for the company or organization.








