funsec mailing list archives

Political Hacking Hits MySpace


From: "Fergie" <fergdawg () netzero net>
Date: Tue, 18 Jul 2006 03:56:17 GMT

Via SC Magazine Online.

[snip]

Several bloggers are reporting today a MySpace hacking scheme in which
malware writers embed Flash-based malicious code in profiles and
redirect victims to an online tirade concerning the Sept. 11, 2001
terrorist attacks.

When logged-in users of the popular social networking site visit one of
these "hacked" profiles, they are redirected to a blog containing
conspiracy theories that the U.S. government orchestrated the attacks,
according to security blog ChaseAndSam.com. In addition, those
individuals visiting profiles that contain the malicious code will have
their own profiles corrupted.

The problem can be solved by removing the code from a user's "About Me"
section in their profile, according to ChaseAndSam.com.

[snip]

More:
http://www.scmagazine.com/uk/news/article/569987

ChaseAndSam.com:
http://chaseandsam.com/2006/07/myspace-hack-spreading-like-wildfire.html

- ferg


--
"Fergie", a.k.a. Paul Ferguson
 Engineering Architecture for the Internet
 fergdawg(at)netzero.net
 ferg's tech blog: http://fergdawg.blogspot.com/


_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.


Current thread: