<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" 
      xmlns:thr="http://purl.org/syndication/thread/1.0">
  <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/breaking_another_twitter_hack_in_the_wild.php" />
  <link rel="self" type="application/atom+xml" href="http://www.readwriteweb.com/atom.xml" />
  <id>tag:www.readwriteweb.com,2011:/1/tag:www.readwriteweb.com,2009://1.14134-</id>
  <updated>2011-08-16T17:38:25Z</updated>
  <title>Comments for Updated: Another Twitter Hack in the Wild - Adult Webcam Site Sends Spam Messages</title>
  
  <generator uri="http://www.sixapart.com/movabletype/">Movable Type 4.35-en</generator>
  <entry>
    <id>tag:www.readwriteweb.com,2009://1.14134</id>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/breaking_another_twitter_hack_in_the_wild.php" />
    <link rel="service.edit" type="application/atom+xml" href="http://www.readwriteweb.com/cgi-bin/mt/mt-atom.cgi/weblog/blog_id=1/entry_id=14134" title="Updated: Another Twitter Hack in the Wild - Adult Webcam Site Sends Spam Messages" />
    <published>2009-03-06T21:17:54Z</published>
    <updated>2009-03-07T00:21:08Z</updated>
    <title>Updated: Another Twitter Hack in the Wild - Adult Webcam Site Sends Spam Messages</title>
    <summary>It looks like either Twitter or a third-party Twitter service was hacked today by an adult webcam site. Chances are that you have seen the following message in your Twitter stream at some point in the last few hours: &quot;hey! 23/Female. Come chat with me on my webcam thingy here www.chatwebcamfree.com.&quot; The constant stream of...</summary>
    <author>
      <name>Frederic Lardinois</name>
      
    </author>
    
    <category term="News" />
    
    <content type="html" xml:lang="en" xml:base="http://www.readwriteweb.com/">
      <![CDATA[<p><img alt="twitter_logo_Jan_09.png" src="http://www.readwriteweb.com/twitter_logo_Jan_09.png"  />It looks like either Twitter or a third-party Twitter service was <a href="http://www.thetechnewsblog.com/2009/03/06/twitter-accounts-hacked-again/">hacked </a>today by an adult webcam site. Chances are that you have seen <a href="http://search.twitter.com/search?q=hey!+23%2FFemale.+Come+chat+with+me+on+my+webcam+thingy+here.">the following message</a> in your Twitter stream at some point in the last few hours: "hey! 23/Female. Come chat with me on my webcam thingy here www.chatwebcamfree.com." The constant stream of messages just stopped as we were writing this story. We have asked Twitter for a response and will update this post as soon as we hear more.</p>]]>
      <![CDATA[<p><em><strong>Update 1</strong>: According to security firm <a href="http://countermeasures.trendmicro.eu/?p=47">Trend Micro</a>, the webcam site serves up "an obfuscated JavaScript that loads up porn related advertisments on the browsing computer." It is still not clear how the Twitter users' accounts were compromised, however</em>.</p>

<p><em><strong>Update 2</strong>: Here is <a href="http://blog.twitter.com/2009/03/safekeeping-twitter-accounts.html">Twitter's</a> reaction. Apparently, about 750 accounts were compromised in this attack. Twitter has reset these users' passwords and deleted the webcam tweets. Still no news about how the hackers got a hold of the passwords.</em></p>

<p>For now, we recommend that you check your updates to see if this message appears in your stream. If it does, you'll probably want to change your password immediately. </p>

<p><img alt="twitter_hack.png" src="http://www.readwriteweb.com/images/twitter_hack.png" /></p>

<p>Twitter itself has a decent track record when it comes to security (though some celebrities' accounts were <a href="http://blog.twitter.com/2009/01/monday-morning-madness.html">hacked</a> a while back), so we assume that this hack originated somewhere else, but for now, it is not clear how these hackers managed to get a hold of all of these users' accounts.</p>

<p>The last Twitter 'hack' turned out to be <a href="http://www.readwriteweb.com/archives/dont_click_no_really_dont_even.php">relatively benign</a> and just exploited a well-known security hole but didn't actually steal users' passwords or direct them to an adult site. Until Twitter's oAuth implementation goes fully live however (Twitter is testing it with a select group of developers right now), users have to hand over their full Twitter credentials to every third-party Twitter service, which could allow a malevolent programmer to easily create a huge database of logins and passwords. </h2>

<p><strong>Update 3</strong>: looking a bit more into this, it seems like the same scam has appeared on IM services like <a href="http://www.msghelp.net/showthread.php?tid=83558">MSN Messnger</a> and also on <a href="http://www.msghelp.net/showthread.php?tid=83558">Facebook</a>.]]>
    </content>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.14134-comment:240730</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.14134" type="text/html" href="http://www.readwriteweb.com/archives/breaking_another_twitter_hack_in_the_wild.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/breaking_another_twitter_hack_in_the_wild.php#c240730" />
    <title>Comment from C K on 2010-09-01</title>
    <author>
        <name>C K</name>
        <uri>http://stickycamz.blogspot.com</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://stickycamz.blogspot.com">
        <![CDATA[<p>Thats pretty smart for the person thats advertising....maybe it might not be as targeted!</p>

<p><a href="stickycamz.blogspot.com" rel="nofollow">www.StickyCamz.Blogspot.com</a> <br />
</p>]]>
    </content>
    <published>2010-09-01T13:13:32Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.14134-comment:227802</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.14134" type="text/html" href="http://www.readwriteweb.com/archives/breaking_another_twitter_hack_in_the_wild.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/breaking_another_twitter_hack_in_the_wild.php#c227802" />
    <title>Comment from karthick on 2010-07-25</title>
    <author>
        <name>karthick</name>
        <uri>http://www.mobilespace.in</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.mobilespace.in">
        <![CDATA[<p>all the hacks r common 2day..<br />
 i lik urs<br />
</p>]]>
    </content>
    <published>2010-07-25T18:07:17Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.14134-comment:138202</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.14134" type="text/html" href="http://www.readwriteweb.com/archives/breaking_another_twitter_hack_in_the_wild.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/breaking_another_twitter_hack_in_the_wild.php#c138202" />
    <title>Comment from praveen on 2009-05-14</title>
    <author>
        <name>praveen</name>
        <uri></uri>
    </author>
    <content type="html" xml:lang="en" xml:base="">
        <![CDATA[<p>hello buddy how are you dear i read your comment it's great i like it dear i learn alot of things from your comment i hope everyone likes your post dear thanx for this information</p>

<p></p>

<p>=========================</p>

<p>will smith</p>

<p>=========================</p>

<p><a href="http://adult.hotshop.com.au" rel="nofollow">adult</a>-</p>]]>
    </content>
    <published>2009-05-14T18:54:46Z</published>
  </entry>

  <entry>
    <id>tag:www.readwriteweb.com,2009://1.14134-comment:129094</id>
    <thr:in-reply-to ref="tag:www.readwriteweb.com,2009://1.14134" type="text/html" href="http://www.readwriteweb.com/archives/breaking_another_twitter_hack_in_the_wild.php"/>
    <link rel="alternate" type="text/html" href="http://www.readwriteweb.com/archives/breaking_another_twitter_hack_in_the_wild.php#c129094" />
    <title>Comment from 8 O&apos;clock Posts on 2009-03-06</title>
    <author>
        <name>8 O&apos;clock Posts</name>
        <uri>http://www.8posts.blogspot.com/</uri>
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.8posts.blogspot.com/">
        <![CDATA[<p>It’s uncertain yet, whether Twitter itself has been compromised or if it’s yet another example of a third party website being hacked. I’m guessing it’s the latter.</p>

<p>Because of Twitter’s lack of functionality, there’s a huge number of websites offering Twitter related services. Many of these third party websites require the user to give their Twitter user name AND password <a href="http://8posts.blogspot.com/2009/03/even-palringo-on-nokia-5800-now-with.html" rel="nofollow">in order to use the service</a>. Amazingly, users seem only too keen to give their account details to these often unknown providers.<br />
</p>]]>
    </content>
    <published>2009-03-07T03:27:25Z</published>
  </entry>

</feed>
