<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	>
<channel>
	<title>Comments on: Why I prefer LinkedIn over Facebook</title>
	<atom:link href="http://kerimsatirli.com/blog/media/why-i-prefer-linkedin-over-facebook/feed/" rel="self" type="application/rss+xml" />
	<link>http://kerimsatirli.com/blog/media/why-i-prefer-linkedin-over-facebook/</link>
	<description>Kerim Satirli's personal site</description>
	<pubDate>Wed, 03 Dec 2008 08:03:28 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.7-RC1</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Marc Köhlbrugge</title>
		<link>http://kerimsatirli.com/blog/media/why-i-prefer-linkedin-over-facebook/comment-page-1/#comment-810</link>
		<dc:creator>Marc Köhlbrugge</dc:creator>
		<pubDate>Sun, 12 Aug 2007 12:49:09 +0000</pubDate>
		<guid isPermaLink="false">http://kerimsatirli.com/blog/media/why-i-prefer-linkedin-over-facebook#comment-810</guid>
		<description>The same happened to Topstat a long time ago. I was able to see all their source files including a file which contained a database username and password.

It's really easy to fix, just put your sensitive code outside your web-accessible directory. This a rookie's mistake and I'm surprised Facebook made it.</description>
		<content:encoded><![CDATA[<p>The same happened to Topstat a long time ago. I was able to see all their source files including a file which contained a database username and password.</p>
<p>It&#8217;s really easy to fix, just put your sensitive code outside your web-accessible directory. This a rookie&#8217;s mistake and I&#8217;m surprised Facebook made it.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Kerim Satirli</title>
		<link>http://kerimsatirli.com/blog/media/why-i-prefer-linkedin-over-facebook/comment-page-1/#comment-809</link>
		<dc:creator>Kerim Satirli</dc:creator>
		<pubDate>Sun, 12 Aug 2007 11:23:21 +0000</pubDate>
		<guid isPermaLink="false">http://kerimsatirli.com/blog/media/why-i-prefer-linkedin-over-facebook#comment-809</guid>
		<description>I updated it indeed and forgot to put that in the last comment.

Good pointer though; it does indeed make it look like as if the quote came from FB(s official statement) rather than from TC's post.

Time to rewrite.</description>
		<content:encoded><![CDATA[<p>I updated it indeed and forgot to put that in the last comment.</p>
<p>Good pointer though; it does indeed make it look like as if the quote came from FB(s official statement) rather than from TC&#8217;s post.</p>
<p>Time to rewrite.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Blake Ross</title>
		<link>http://kerimsatirli.com/blog/media/why-i-prefer-linkedin-over-facebook/comment-page-1/#comment-808</link>
		<dc:creator>Blake Ross</dc:creator>
		<pubDate>Sun, 12 Aug 2007 11:18:28 +0000</pubDate>
		<guid isPermaLink="false">http://kerimsatirli.com/blog/media/why-i-prefer-linkedin-over-facebook#comment-808</guid>
		<description>I see you updated your post, but I don't think I'm communicating well what's misleading: you write that "Facebook then gave an official statement, stating that it was a misconfiguration:" followed by a quote that is not from Facebook. The set-up to the quote implies that Facebook provided it, which is not the case.</description>
		<content:encoded><![CDATA[<p>I see you updated your post, but I don&#8217;t think I&#8217;m communicating well what&#8217;s misleading: you write that &#8220;Facebook then gave an official statement, stating that it was a misconfiguration:&#8221; followed by a quote that is not from Facebook. The set-up to the quote implies that Facebook provided it, which is not the case.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Kerim Satirli</title>
		<link>http://kerimsatirli.com/blog/media/why-i-prefer-linkedin-over-facebook/comment-page-1/#comment-807</link>
		<dc:creator>Kerim Satirli</dc:creator>
		<pubDate>Sun, 12 Aug 2007 11:15:23 +0000</pubDate>
		<guid isPermaLink="false">http://kerimsatirli.com/blog/media/why-i-prefer-linkedin-over-facebook#comment-807</guid>
		<description>I base my conclusions on comments I read that stated that the code lacked many of the important qualities that one would expect to find.

The "trying to blame a misconfiguration" comes from older, similar situations where some kind of misconfiguration was blamed at first and then it became evident that someone had managed to gain access to a service by other means.</description>
		<content:encoded><![CDATA[<p>I base my conclusions on comments I read that stated that the code lacked many of the important qualities that one would expect to find.</p>
<p>The &#8220;trying to blame a misconfiguration&#8221; comes from older, similar situations where some kind of misconfiguration was blamed at first and then it became evident that someone had managed to gain access to a service by other means.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Blake Ross</title>
		<link>http://kerimsatirli.com/blog/media/why-i-prefer-linkedin-over-facebook/comment-page-1/#comment-806</link>
		<dc:creator>Blake Ross</dc:creator>
		<pubDate>Sun, 12 Aug 2007 11:09:24 +0000</pubDate>
		<guid isPermaLink="false">http://kerimsatirli.com/blog/media/why-i-prefer-linkedin-over-facebook#comment-806</guid>
		<description>Kerim,

I know where your quote came from, but your context is deceptive:

"Facebook then gave an official statement, trying to blame a misconfiguration:

"

I'm not sure how you can draw conclusions about the quality of the Facebook source from one or two front-end files that contain little actual code and date back to the very beginning of the site.

Blake</description>
		<content:encoded><![CDATA[<p>Kerim,</p>
<p>I know where your quote came from, but your context is deceptive:</p>
<p>&#8220;Facebook then gave an official statement, trying to blame a misconfiguration:</p>
<p>&#8221;</p>
<p>I&#8217;m not sure how you can draw conclusions about the quality of the Facebook source from one or two front-end files that contain little actual code and date back to the very beginning of the site.</p>
<p>Blake</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Kerim Satirli</title>
		<link>http://kerimsatirli.com/blog/media/why-i-prefer-linkedin-over-facebook/comment-page-1/#comment-805</link>
		<dc:creator>Kerim Satirli</dc:creator>
		<pubDate>Sun, 12 Aug 2007 11:05:32 +0000</pubDate>
		<guid isPermaLink="false">http://kerimsatirli.com/blog/media/why-i-prefer-linkedin-over-facebook#comment-805</guid>
		<description>Blake,

the statement of this stemming from a high server load is based on information I got from the TC post.

The reason I said that this could be related to the API is that many people suggested that the quality of the code was not the way it should be for a web application of this size.

It would make sense that code that does not scale properly could cause a high load and thereby trigger mod_php to leak uninterpreted code.

Still, human or not, a mis-configured apache should not be able to cause this kind of leak. Many questions are still unanswered and I hope that there will be some form of (additional) statement.</description>
		<content:encoded><![CDATA[<p>Blake,</p>
<p>the statement of this stemming from a high server load is based on information I got from the TC post.</p>
<p>The reason I said that this could be related to the API is that many people suggested that the quality of the code was not the way it should be for a web application of this size.</p>
<p>It would make sense that code that does not scale properly could cause a high load and thereby trigger mod_php to leak uninterpreted code.</p>
<p>Still, human or not, a mis-configured apache should not be able to cause this kind of leak. Many questions are still unanswered and I hope that there will be some form of (additional) statement.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Blake Ross</title>
		<link>http://kerimsatirli.com/blog/media/why-i-prefer-linkedin-over-facebook/comment-page-1/#comment-804</link>
		<dc:creator>Blake Ross</dc:creator>
		<pubDate>Sun, 12 Aug 2007 10:45:19 +0000</pubDate>
		<guid isPermaLink="false">http://kerimsatirli.com/blog/media/why-i-prefer-linkedin-over-facebook#comment-804</guid>
		<description>Despite your implication, the quote you provide was not Facebook's statement. The statement was:

"Some of Facebook’s source code was exposed to a small number of users due to a bug on a single server that was misconfigured and then fixed immediately. It was not a security breach and did not compromise user data in any way. The reprinting of this code violates several laws and we ask that people not distribute it further."

This error was not a result of high load and was not related to the platform API; it was, as the statement says, an error in server configuration that was quickly remedied.</description>
		<content:encoded><![CDATA[<p>Despite your implication, the quote you provide was not Facebook&#8217;s statement. The statement was:</p>
<p>&#8220;Some of Facebook’s source code was exposed to a small number of users due to a bug on a single server that was misconfigured and then fixed immediately. It was not a security breach and did not compromise user data in any way. The reprinting of this code violates several laws and we ask that people not distribute it further.&#8221;</p>
<p>This error was not a result of high load and was not related to the platform API; it was, as the statement says, an error in server configuration that was quickly remedied.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
