A 17-year old teen from Melbourne, Australia "claimed responsibility" for making public the cross scripting flaw on Twitter - which in a few hours took a potent form and caused a widespread attack on Twitter.
The flaw, which was exposed in a casual tweet, was exploited by hackers and in a few hours, Twitter was under attack. The "MouseOver" JavaScript code that was exposed automatically opened a pop up window when a user simply hovered his mouse over links on Twitter. This spelt a golden opportunity for hackers who used the flaw to make people click on links they might have not clicked usually. Most of these links lead to adult and infected websites.
Twitter explained about the attack in a detailed blog post and added that it was aware of the flaw a month back and had already fixed it. However, a recent update to the site caused the security hole to reappear and was then forgotten. Bob Lord, a spokesperson from the Twitter Security team says, "First, someone created an account that exploited the issue by turning tweets different colors and causing a pop-up box with text to appear when someone hovered over the link in the tweet. Other users took this one step further and added code that caused people to re-tweet the original Tweet without their knowledge."
Twitter confirmed that it would not be pursuing legal action against the perpetrators of the attack - nor will it identify individuals publicly who might have been involved in these attacks.
Labels
Popular Posts
-
W hatsApp, The Much popular iOS App, and the 6th most popular downloaded iPhone app is now free for download. The iOS app used ...
-
Using the IMEI number-The International Mobile Equipment Identity (IMEI) number we can easily recover Stolen Mobiles by tracing the mobile ...
-
Hey guyz, Wanna win a Core i7 PC? If so, just play the Catapult Challenge of Intel. All you need to do is play a simple flash game. Obj...
-
Yes, you are correct. Microsoft Office 2010 is available for $9. Microsoft Professional Plus 2010 Home is availble for 9$ at microsofthup w...
-
Microsoft launched the Outlook Web App for iPhone and iPad today. Here is a detailed description: IMPORTANT: You need to have the late...
Blog Archive
-
▼
2010
(48)
-
▼
October
(30)
- phpMyAdmin 3.3.8
- Intel Catapult Challenge - Win a Core i7 PC
- Mac OS X Lion arrives in Summer 2011
- Facebook | Import your Orkut friends or Google Con...
- HD Wallpapers
- Pidgin 2.7.4
- Google Redesigned
- FreeApps: Download all the free apps you need with...
- Google is looking for geeky kids!
- HTC 7 Pro arriving in UK and rest of Europe 'early...
- Can Windows Mobile Catch Up to Android, iOS?
- iOS 4.2 beta 2 Now Available for Download to Devel...
- October 4
- Nice Trick to Protect Files & Folders in Windows w...
- How to make a USB Drive Bootable
- 160by2 for iPhone
- Twitter Bug Showing Zero Followers and Zero Follow...
- Now Upload Clearer, Crispier Images To Facebook
- How To Insert SIM Card in iPhone 4/iPhone 3GS
- Ovi Files to Shut Down on October 15
- Ovi Files to Shut Down on October 15
- Twitter Unveils Fast Follow via SMS for India
- Teen Exposes Twitter Flaw, Hackers Exploit It
- Mozilla: We're Not Porting Firefox to the iPhone
- Microsoft Security Essentials Now Protecting Over ...
- Goo.gl URL Shortener Available to All
- 3D Notebook Shipments Off to a Slow Start
- AT&T to Launch Windows Phone 7 Devices on November 8
- Chrome Gains Market Share, IE Slips a Tick
- Live FM
-
▼
October
(30)