Facebook resets password tool and has a talk with Photo Stalker
Facebook has changed the way its password reset tool works so that it does not easily verify e-mail addresses after CNET News contacted it with concerns from an Israeli security expert. On a separate matter, the company also has asked the maker of the Photo Stalker Facebook app to make it clear that despite the name, the app conforms to Facebook's privacy guidelines.
First off, Facebook is making it harder for spammers to mine the site for valid e-mail addresses.
"Last night, we took steps to make sure that our password reset tool is not confirming email addresses," Facebook spokesman Barry Schnitt wrote in an e-mail on Thursday. "Specifically, we now give users the same message whether or not we recognize the email address and we are adding random amounts of time to the response to ensure that measuring the time isn't an indication of anything."
