Facebook is by far one of the top social networking sites on the Internet, with millions of users, but how secure is it? Or rather how security conscious are the people who use it?
These questions are constantly brought up about the site, and with the rise of malicious web activity people have become more concerned with their security. The problem is that most of them don’t think twice about how many people can see their information posted on Facebook, so I decided to see how security conscious people were on there. What’s the best way to do this? Well I created a totally fake profile, no information was real at all, and then I could see how many people actually check who they are friending and how much information people could retrieve by making a fake identity.
Note: As creating a fake identity is against Facebook’s TOS, it is very possible that the account will have been deleted by the time this article is read, but that doesn’t matter, all that’s important is that this has been done showing what can happen.
Making The Fake Account
Creating a new Facebook account is as simple as 1-2-3. Fill in your name, e-mail, password, and DOB. After this you will get an e-mail with the account info, and you can sign into your new account. Next fill in some information about yourself on the blank Facebook page, add a profile picture, and start adding friends. For future reference my Facebook page is “Dolus Carson” but Facebook won’t allow you to see the page unless you friend me so just trust me on the information. Just for the record I’ve never known anyone named Dolus Carson, I simply took my blog pseudonym and added a good last name to it.
What I Did To Start
First of all no Facebook account is even slightly reputable without a profile picture, so what picture did I put up? Marcus Vick of course, generic but at least everyone knows who he is and people put up pictures of sports stars all the time, nothing suspicious there. Next I joined a school network, which is integral for finding friends later. I chose a random school and ended up joining the “Langley High” network which is supposedly a school near Washington D.C. Here are two screenshots of my profile:
Here’s the second half:
Adding Friends
Now that the profile had been created it was time to get some friends. Facebook actually provides a tool that makes finding friends as easy as going to your “Home” screen and going to the “People You May Know” tool.
Notice how the both the people at the bottom went to Langley High? Well since I had joined the network earlier everyone in this box also went to Langley. This makes adding friends a cinch since all they have to see if that you go to their school and then they accept you as a friend. The first friend was hard since Facebook shows how many friends you have in mutual, at first this was 0 but within 30 minutes I already had 10 friends. Obviously someone just went onto their Facebook and saw a friend request from someone that goes to Langley High, so they friended me back. Now making friends after this is easy since Facebook will show that there are 10 or 20 mutual friends between me and the person I’m friending. So now I just went to the “People You May Know Box” and clicked away for 20 minutes or so. The next day I went on and had 30 friends or so. Guess how fast people friended me, well within 4 days I already had over 100 Facebook friends. From this point the possibilities of friends are limitless since I have so many friends that most people just assume that they’ve never seen me, but I must know them somehow so they friend me. Plus who turns down Facebook friends? Having more just means that you’re more “popular.”
The Sad Truth
Not only did I make an effort to friend people, but many people also made the effort to friend me. I’ve had at least 8 friend requests from people that I never knew, and they have certainly never known the fictitious “Dolus Carson.” I also had 3 birthday wishes from people that never knew me, and one person commented on a poem that I posted (just for fun). It wasn’t until a bit later that a few people wrote on my wall asking who I was, which surprised me since I thought these posts would have happened earlier. I also received one or two private messages asking who I was. Here are the wall posts:
Timeline
The profile was made at 2:35 PM on Saturday, November 22nd, and the 100 friend mark was reached on Wednesday, November 26.
The Point
Well you’ve seen for yourself how easy it can be to create a fake identity, and possibly even use it for malicious purposes. All the information people put on Facebook is visible to almost anyone, especially their friends. This means that I could retrieve phone numbers, e-mails, and even addresses from the 139 friends I have if they have posted that information? Scary? Yes I think so.
Basically you just have to be aware of your own security online. Do not post information that other people shouldn’t have and always second guess yourself when wondering whether you should do something that could compromise your online safety. And as pointed out from above, check who you friend on Facebook.







