Researchers at Facebook and Carnegie Mellon University developed a tool for man-in-the-middle attacks. They found 0.2 percent of 3 million SSL connections to Facebook contained tampered or forged certificates. The researchers embedded a Flash applet in web pages served to Facebook users chosen at random. The code bypassed the network protocol stack of the browser and sent information on certificates to a server run by the researchers. The research also highlighted the potential security risks introduced by anti-virus products and content filtering technology.”]