The loophole comes in the shape of Facebook's mutual Friends feature. Any user can see the mutual Friends between any two other users, so long as one of them has a publicly available Friends list. So if you keep your Friends List private, but your best friend doesn't, a third party could compare your two lists, and voilà — they'd be able to see all the Friends the two of you have in common Read more...