for my own reference but if you haven't heard... might wanna check it out
>> New Livejournal release is the cause of massive user privacy breech -
unfunnybusiness Are you a still a Livejournal user? Well, son, better hold onto your butt.
>>
lj security-related PSA -
eruthros I know a lot of y'all don't use lj, but in case you do, there seems to be a bug that caused (is causing?) a security/privacy breach: multiple people have reported that when they try to edit their own entries/profile/inbox, they are taken to another random user's edit entries/profile/inbox page, and can see all of that user's flocked and private entries.
>>
Reports of Massive LJ Privacy Breach -
boundbooks LJ released an update yesterday (
http://lj-releases.livejournal.com/70891.html) which has apparently caused people to report some massive breaches of privacy, including the ability to edit other users' accounts and entries.
>> On LJ Security Fail -
lorax And the official has a
comment saying this is a continuing problem. And
another that says that actual action (as in posting as someone else) was taken while the log-in switch was happening. (The wording seems a little contradictory in comments, but might just be an issue with stating something oddly.)
ETA: crossposting this to LJ for the moment (if it still works) -
dw_codesharing for invite codes