Firesheep - HTTP Session Hijacking For All, Firesheep, Firesheep Firefox, Mozilla Firesheep: So here today at Holy sh-t ^: the new extension for Firefox which allows Firesheep even your nephew 4-years to increase its revenues by blackmail you after the HTTP session hijacking via an open wireless network in your accounts or Facebooktwitter. The extension also identifies the cookies, Amazon.com, Basecamp, Foursquare, Gowalla, bit.ly, Cisco, CNET, Dropbox, Enom, Evernote, Flickr, Github, Google, HackerNews, Harvest, Windows Live, NY Times, Pivotal Tracker , Slicehost, tumblr, WordPress, Yahoo, Yelp, etc.
Eric Butler has created, and as he says on the intro page Firesheep:
Facebook is constantly deploying new "privacy" features in an endless attempt to stifle the cries of unhappy users, but why when you can simply take over an account at all? Twitter requires all third-party developers to use OAuth immediately released (and promoted) a new version of their website is not secure. When it comes to user privacy, SSL is the elephant in the room.
For those who will probably blame Butler to make it easier to expose vulnerabilities, I throw the eternal rhetorical question: is the guy who points out that damn near every door in the neighborhood is unlocked part of the problem or part of a possible solution? I would say the last.