Mouse-Over Exploit Hits Twitter.com

A JavaScript exploit has allowed all kinds of sites you wouldn’t want your boss to catch you looking at to pop-up sites and text through Twitter.com and forcing a re-tweet, even if all a user does is move their mouse over a particular link. Update: It’s been fixed.

The exploit has spread to thousands of accounts now – some with hardcore porn pop-ups, other with jokey references to the exploit – so stick with a third-party Twitter client for the time being to read and send your short updates. [Link and image via Sophos]

Update: Some have reported that simply visiting Twitter.com, with certain tweets from your followers loaded, could be enough to trigger an incident (that link is Twitter.com too, but only to a specific no-link tweet). Avoid Twitter.com entirely until the exploit is repaired.

Update 2: Twitter posts that the exploit has been patched, but it’s likely still a good idea to let the fix propagate through DNS servers before heading back to Twitter’s web client.


The Cheapest NBN 50 Plans

Here are the cheapest plans available for Australia’s most popular NBN speed tier.

At Lifehacker, we independently select and write about stuff we love and think you'll like too. We have affiliate and advertising partnerships, which means we may collect a share of sales or other compensation from the links on this page. BTW – prices are accurate and items in stock at the time of posting.

Comments


Leave a Reply