February 2nd, 2006


February News

Punxsutawney Phil says there will be six more weeks of winter, so don't pack away your warm LJ hoodie just yet!

Frank the Comic
Thanks to the genius of ryanestrada, our faithful mascot Frank is now the star of his own comic strip. Visit frankthecomic to read the first three installments of the ballad of Frank, which answers the question: "How can a goat use a computer?" Ryan will release a new comic about once a week. Be sure to join the community to get access to special treats like userpics and desktop images.

Site Security
The engineering, ops, support and abuse teams have been hard at work making sure that LiveJournal is secure. We've always made security-related changes as they've become necessary, and we will continue to do so. The following is a brief recap of the vulnerabilites we faced recently as well as the fixes that were committed.

The technical details are complex (read the details in lj_dev), but this specific vulnerability was the result of the way Mozilla/Firefox browsers handled certain behaviors possible in a user's journal style. All browsers have vulnerabilities, just like all big services like LJ have occasional bugs; many of us use Firefox and we all use LJ and we will continue to do so. We have handled this security situation by aggressively working to fix the vulnerability, supporting users with responses from our Support team, updating our users without disclosing sensitive technical details before the fix was complete, and following up with ongoing support and more communication.

For those of you who had a negative experience over the past week or so, we are truly sorry. We hate to see any one of you have a bad time on LJ. We worked with users to resecure and clean up a couple hundred accounts. Our fixes resulted in some bugs and general performance issues that certainly affected many more of you, and we regret any inconvenience it caused. We really appreciate everyone being patient and supportive during this time.

To help you better protect your account, we've created a page where you can view every login to your account to make sure no one but yourself is accessing it. In keeping with LiveJournal's open philosophy, we're asking for the community's help to find and report any undiscovered security issues. If this interests you and you'd like to participate, check out lj_dev for ongoing details.

New LJ Design Community
Our design team has created a community where LiveJournal team members can discuss design questions, issues, and new ideas for LiveJournal with the LJ community. Visit lj_design to meet the team and share your feedback.

Valentine's Day is right around the corner. Head to 21406 to confess your secret LJ crush, and stay tuned to news for our upcoming Valentine's Day plans!