You sure you didn't just get phised(sp). On myspace they just replace a link such as photos to a fake login page so you think you have to log in again. It can be quite effective when your just browsing along as your not thinking.
Applications don't have access to passwords via the applications api on facebook.
Applications don't have access to passwords via the applications api on facebook.


I locked it down and change PW before he could do anything - perhaps some kind of cookie grabber was used - it would make sense as they attempted to set the default email to the hotmail one but was unsuccessful.