%0 Conference Proceedings %T Security in OpenSocial-Instrumented Social Networking Services %+ XING AG %+ Europäische Fachhochschule (EUFH) %A Häsel, Matthias %A Iacono, Luigi Lo %< avec comité de lecture %( Lecture Notes in Computer Science %B 11th IFIP TC 6/TC 11 International Conference on Communications and Multimedia Security (CMS) %C Linz, Austria %Y Bart Decker; Ingrid Schaumüller-Bichl %I Springer %3 Communications and Multimedia Security %V LNCS-6109 %P 40-52 %8 2010-05-31 %D 2010 %R 10.1007/978-3-642-13241-4_5 %Z Computer Science [cs]/Digital Libraries [cs.DL]Conference papers %X Securing social networking services is challenging and becomes even more complex when third-party applications are able to access user data. Still, adequate security and privacy solutions are imperative in order to build and maintain trust in such extensible social platforms. This paper discusses security issues in the context of OpenSocial-instrumented social networking services. It shows that the OpenSocial specification is far from being comprehensive in respect to security. Resulting weaknesses and shortcomings are emphasized and discussed. Finally, the paper attempts to fill these gaps by proposing extensions to the OpenSocial specification and recommendations for social networks that implement OpenSocial. %G English %2 https://inria.hal.science/hal-01056369/document %2 https://inria.hal.science/hal-01056369/file/cms2010_submission_16.pdf %L hal-01056369 %U https://inria.hal.science/hal-01056369 %~ IFIP-LNCS %~ IFIP %~ IFIP-LNCS-6109 %~ IFIP-TC %~ IFIP-TC11 %~ IFIP-TC6 %~ IFIP-CMS %~ IFIP-2010