No update from Twitter :: Worm #2 on the Loose

12 04 2009

If you check the Twitter: Status page you will find info the Stalk Daily worm that maliciously sent advertisements throughout the twitterverse, but there is NO mention of todays worm by the same menace. Pete Cashmore (@mashable) reports today, Sunday the 12th, on Mashable.com (@mashable) that mikeyy is on the loose. It seems that a 17 year old by the name of Mikeyy Mooney is responsible for both of these attacks.

As Pete said, “We should emphasize that the attack is more of a nuisance than malicious – its only activity is to post unwanted messages.”

It posts messages such as:

Man, Twitter can’t fix sh*t. Mikeyy owns. :)
Dude, Mikeyy is the sh*t! :)
Twitter should really fix this…

If your account has been infected, here is how to remove it:

  1. Turn off Javascript in your browser. (This will be in settings or options – Google for more detail.)
  2. Close down any exernal Twitter clients (i.e., TweetDeck or Tweetie).
  3. In your Twitter settings page, delete anything suspicious that you did not add yourself. Check everywhere carefully, but it’s usually in the URL or location fields.
  4. Check that your profile design hasn’t been compromised. Some folk are saying their colours have been reset. (You will need to turn Javascript back on to edit your profile design. This is fine at this stage.)
  5. Reset your password on Twitter.  It seems that there is no evidence that these hacks are malicious enough to break into your Twitter account, but why take the risk?
  6. Once done, log back out of your account and then back in. If Twitter has locked your account, or does so in the future, you will have to request a password reset from Twitter.

When Mikeyy made yesterday’s worm StalkDaily it worked liked this: If followers follow the links to stalkdaily.com, believing the tweets to be a real tweet/message from someone they follow on Twitter, the script injection attack then infects their own profile and causes them to send out similar messages.  Simple as that.

You may ask, why would someone do this?  Out of sheer boredom!

Like what you read, follow me.

fm