Hackers exploit Twitter Auto follow me vulnerabilty

Seems like hackers have made the move to Twitter and are exploiting a bug which can access users accounts.

Aviv Raff who launched the website Twitpwn to document the research he has been doing on the subject had said that the “Twitter security team was notified about the problem on the 31st of July and he will report the technical details about the vulnerability once it has been fixed.”

A potential hacker can use the bug by tricking users into clicking on a link on a hacked website, from then on the users twitter account is automatically set to follow the hacker.

Aviv has also reported another bug in the twitter systems which was fixed on the 31st of July that allowed a hacker to send you Spam emails with links to potentially malicious websites. This was achievable due to the way Twitter sends mails to the users and because twitter does not censor the full name of the user.

Thanks to Aviv for testing this stuff, it’s a good idea to follow Twitpwn just in case he digs up anything else. In the mean time keep your eyes open for any unusual followers.

Share and Enjoy:
  • Digg
  • Sphinn
  • del.icio.us
  • Facebook
  • Mixx
  • Google
  • Technorati
  • TwitThis
  • Pownce
Leave a Reply

Additional comments powered by BackType