Hulu's Facebook Connect Integration Facing Security Issues
In a post on Hulu's official blog, the company admitted that they've discovered an issue that caused some Hulu users to gain temporary access to other members' accounts. However, Hulu stresses that this was not the work of hackers, and that no sensitive user information such as passwords or credit card numbers were lost.
We’re still drilling down on the precise nature of the issue, but we know that it was a coding and configuration error on Hulu’s side, and not the result of hacking, or other third party actions, or a vulnerability in Facebook Connect. We’ve been able to confirm approximately 50 affected users whose profile data, including email addresses, could have been accessed. But no one gained access to Hulu systems or highly sensitive user information such as passwords or credit card numbers.
Currently, the integration is put on hold:
Out of an abundance of caution, we disabled all the connection points to Facebook Connect on Hulu, and we required all Hulu users to login again directly through our site. We are also taking the precautionary measure of resetting privacy settings to the most restrictive settings for anyone who logged into their Hulu account through Facebook during the affected period. Once we are certain that the issue has been fully addressed, we will re-launch our Facebook Connect program.