Feeds

Security bugs floor Google's Friendster-clone

Orkut comes and goes

  • alert
  • submit to reddit

Top three mobile application threats

The name means "to cum" in Finnish slang - literally, to orgasm - but the Orkut social networking service that Google launched on Friday was utterly spent by Sunday afternoon.

Members of the Friendster-clone were greeted with a message that faded (stylishly) into view - the stylish fade-in coming from some piece of fancy script that only a web designer would think was important.

"We've taken orkut.com offline as we implement some improvements and upgrades suggested by users. Since orkut is in the very early stages of development, it's likely to be up and down quite a bit during the coming months."

Ah, just like a Microsoft program, we thought.

"None of the information you've entered will be deleted, and none of the connections you've made will be lost. And, if all goes well, you should see some significant improvements when we come back online.

"We'll send an email once everything is ready and running again. Thanks for your feedback and for bearing with us as we work our way up the learning curve."

What did the Orkut team learn? Well, it wasn't to do with scalability, as many of the wildly erroneous rumors flying around the Net at the weekend suggested. The Orkut programmers can put away that copy of "In Search of Clusters". Scalability is the art of keeping going while millions of new users arrive, and it's not trivial to fix, and it's plagued social network companies who have to draw maps of these social relationships. Friendster itself, for example, has given up drawing these complex webs in real time, and instead caches them overnight.

No, the problem was security. Sources close to Google suggest widespread XSS (cross-site scripting) hacks forced the closure of the service. It isn't clear how much personal data or communication was disclosed.

The major problem facing social networks is that they scarf up personal information far more efficiently than a Carnivore system. People really aren't going to trust them if they view these start-ups as honeypots for future marketroids to reap everything we didn't want them to know. Let alone allow a passing hacker to scarf up this potential archive of great exploitable value.

And not to bore you, but you've got to love how that recursive Privacy Statement shimmers into view. How do they do that?

While the service will no doubt splutter back into life, it's left many wondering whether Google was entirely serious about the exercise. Maybe you can figure out what's wrong with this story...

Google allows staff to spend twenty per cent of their time on their own projects. Having failed to acquire Friendster last year, Google was under some media pressure to create its own offering in a space that "experts" were telling us was "hot". An area that marketing consultants would advise adds "stickiness" to the site - if it wanted to be one of those "sticky portals" we read about years ago, in the late 1990s.

But for some strange reason, Google entrusted the Friendster-buster to a junior programmer to implement on a Windows system. Why on earth the proven masters of open source scalability chose to allow this to happen, puzzles us all. Maybe Orkut will come again - as a full fledged Google offering. Or perhaps the name is a clue. Perhaps Google really doesn't take "social networking" as a business concept that deserves anything closer than arm's length circumspection, very seriously at all. And perhaps that's a very good call. ®

Related Stories

Google debuts Friendster-clone Orkut
Friendster bubble 'has peaked - will pop'

Build a business case: developing custom apps

More from The Register

next story
Stick a 4K in them: Super high-res TVs are DONE
4,000 pixels is niche now... Don't say we didn't warn you
BBC goes offline in MASSIVE COCKUP: Stephen Fry partly muzzled
Auntie tight-lipped as major outage rolls on
iPad? More like iFAD: We reveal why Apple fell into IBM's arms
But never fear fanbois, you're still lapping up iPhones, Macs
Philip K Dick 'Nazi alternate reality' story to be made into TV series
Amazon Studios, Ridley Scott firm to produce The Man in the High Castle
Amazon Reveals One Weird Trick: A Loss On Almost $20bn In Sales
Investors really hate it: Share price plunge as growth SLOWS in key AWS division
Bose says today is F*** With Dre Day: Beats sued in patent battle
Music gear giant seeks some of that sweet, sweet Apple pie
There's NOTHING on TV in Europe – American video DOMINATES
Even France's mega subsidies don't stop US content onslaught
You! Pirate! Stop pirating, or we shall admonish you politely. Repeatedly, if necessary
And we shall go about telling people you smell. No, not really
Too many IT conferences to cover? MICROSOFT to the RESCUE!
Yet more word of cuts emerges from Redmond
prev story

Whitepapers

Designing a Defense for Mobile Applications
Learn about the various considerations for defending mobile applications - from the application architecture itself to the myriad testing technologies.
Implementing global e-invoicing with guaranteed legal certainty
Explaining the role local tax compliance plays in successful supply chain management and e-business and how leading global brands are addressing this.
Top 8 considerations to enable and simplify mobility
In this whitepaper learn how to successfully add mobile capabilities simply and cost effectively.
Seven Steps to Software Security
Seven practical steps you can begin to take today to secure your applications and prevent the damages a successful cyber-attack can cause.
Boost IT visibility and business value
How building a great service catalog relieves pressure points and demonstrates the value of IT service management.