{"id":15315,"date":"2010-09-21T15:35:00","date_gmt":"2010-09-21T13:35:00","guid":{"rendered":""},"modified":"2010-09-21T15:35:00","modified_gmt":"2010-09-21T13:35:00","slug":"warning-twitter-under-attack","status":"publish","type":"post","link":"https:\/\/mybroadband.co.za\/news\/internet\/15315-warning-twitter-under-attack.html","title":{"rendered":"Warning: Twitter under attack"},"content":{"rendered":"<p>A security vulnerability in Twitter is being exploited to redirect users to websites without their consent as well as &ldquo;retweet,&rdquo; or broadcast, the link to their followers.<\/p>\n<p>Only those users who view the links on the official Twitter web interface while logged into their accounts seem to be affected at present, however.<\/p>\n<p>What makes the &ldquo;virus&rdquo; particularly unique is the fact that users don&#8217;t have to click on a link to be affected. It makes use of a method called &ldquo;onMouseOver&rdquo; and JavaScript to make the user&#8217;s Twitter account do the bidding of the exploiter.<\/p>\n<p>Mashable reports that they&#8217;ve seen versions of the exploit opening popups and redirecting users to pornographic websites.<\/p>\n<p>One of the links, kindly provided by one of the people we follow, creates an overlay over the whole Twitter interface, retweets the link and sends a direct message somewhere.<\/p>\n<p>We contacted Twitter for comment and received their standard &ldquo;Something is technically wrong. Thanks for noticing&#8230;&rdquo; message, but haven&#8217;t received any word from them yet.<\/p>\n<p>ReadWriteWeb reports that Twitter has said that the cross-site scripting (XSS) attack has been identified and patched. We can confirm that for our accounts, including a throw away account we created to test some of the attack-tweets, the exploit doesn&#8217;t seem to be working anymore.<\/p>\n<p><a href=\"http:\/\/mybroadband.co.za\/vb\/showthread.php\/269381-Twitter-vulnerability-exploited\" target=\"_self\" title=\"Warning: Twitter under attack\"><strong>Warning: Twitter under attack<\/strong><\/a> &lt;&lt; Were you affected?<\/p>\n","protected":false},"excerpt":{"rendered":"<p>A vulnerability in Twitter is being widely exploited on thousands of accounts<\/p>\n","protected":false},"author":17,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[18],"tags":[],"class_list":["post-15315","post","type-post","status-publish","format-standard","hentry","category-internet"],"_links":{"self":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/15315"}],"collection":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/users\/17"}],"replies":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/comments?post=15315"}],"version-history":[{"count":0,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/15315\/revisions"}],"wp:attachment":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/media?parent=15315"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/categories?post=15315"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/tags?post=15315"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}