By default this script will do a post on the victim's Facebook account.
The social networking site users up two days later by an attack fidgety widespread malicious scripts. Of monitoring, it is known that the attack was spread by using techniques XSS (Cross Site Scripting).
If the user clicks on the link provided - and generally use the URL Shortener like bit.ly, tinyurl.com, go.gl etc. - then the victim will be delivered to the pages that previously had been prepared containing XSS exploitation.
According to Alfons Tanujaya, observers viruses and cyber security of Vaksincom, XSS maker is clearly an Indonesian and follow the news, especially football in Indonesia.
"By leveraging the recent issue and making it social engineering (social engineering), a sophisticated, so do not be surprised if many people are interested in the link that was promised and hoped to see something funny from the link," said Alfons on testimony, March 29, 2011.
However, Alfonso said, rather than in getting a funny picture, what happened instead was a victim The access link XSS. "By default, the script will do a post on his Facebook account," he said.
However, Alfonso said, looking at XSS methods used, chances are this script does not take action to steal passwords.
"Actions taken by the perpetrator similar actions by the spreader Firesheep," said Alfons. "They stole another cookie Wifi fellow users without knowing the password and use it to log into the accounts of Facebook, Twitter and Yahoo Mail are not using https security," he said.
However, Alfonso said, for security reasons and in case you ever click on this link is recommended to change the password of your Facebook account.
As is known, a tool used, ie, URL Shortener or penyingkat URL was actually created for good purpose. URL Shortener can condense a long URL addresses to be very short. But like two-edged sword, URL Shortener be rapidly adopted by spammers, virus and malware makers.
"Since the original URL Shortener address this in no way be viewed and with one click the link provided by URL Shortener it, then we will be delivered to the address of a site that has been in daftarkansebelumnya by the makers of URL Shortener this," said Alfons.
If the site contains malicious code such as XSS emerging in Facebook today, then this script will be able to make the victim automatically posting otomatistanpa realized by the owner of the account.
Therefore, Internet users are expected to be cautious when getting a link containing the URL Shortener like bit.ly, tinyURL.com, penyingkat goo.gl and other URLs.
Langganan:
Posting Komentar (Atom)
Blog Archive
-
▼
2011
(307)
-
▼
Maret
(206)
- Car Components of Fruit, Could it be?
- Lily Allen Take the Tractor on Wedding Day
- Stock buyback, Telkom to spend Rp2 Trillion
- Pendapatan Bakrie & Brothers Melonjak 72%
- 3 Mobile Carriers Big Called Kominfo
- Masih Terima SMS Spam? Adukan ke BRTI
- Defeat India Indonesia ICT access
- Atletico President Denies Release Kipernya to MU
- 10 Pemain Semen Padang Hancurkan Persijap
- Pastore: Can I Can Highest Bid
- Less Paint, New Issues World Automotive
- Tiket Laskar Dagelan Jogja Sold Out
- Rebecca Black Follow the trail Justin Bieber
- April, Japanese Import products will slide sharply
- Berapa Gaji Petinggi TNI/Polri dan PNS?
- SCTV Acquisition Indosiar, What word MNC boss?
- Trap on Facebook Use Techniques XSS
- Euro 2012 Qualifying Complete Results
- Ghana Vs England ended with a draw
- Italy beat Ukraine 10 Players
- After Spain's Xavi wins Complaints
- Tigerfish, Fish Wild African Origin
- RVDV Want to Return to Madrid
- 'FIFA Harus Selamatkan Sepakbola Indonesia'
- MU Most Hated Company in England
- Barca Threatened Loss of Two Young Talents
- Barcelona president Players For Sale Fabregas
- Selly Dibela 14 Pengacara
- Jose Pinto Barca extends contract
- Ferguson: Friendship Laga Waste of Time
- Dengan Gmail, Kirim SMS Gratis
- With Gmail, Send Free SMS
- Expelled from Peter Crouch's girlfriend's residence
- Alat Pantau Dijarah, Bromo Sulit Dimonitor
- 2050, Car-Free Streets Europe?
- Knicks Beat Magic Through OT
- Leeches Cure Heart Disease by
- Drinking Milk Prevent Heart Attack
- Stanchart: March 0.1 Percent Will Deflation
- Stanchart: Tsunami Japanese Economy Not Disturb
- Oprah Promises Surprises in Last Episode
- Exhibition space super luxury Rolls-Royce
- 50% 0.05% Tweet Derived from Users
- Withdrawal of Greenland & Antarctica Going Fast
- 2050, Clean Water Crisis City Population
- Gerrard Happy Reject Real Madrid & Chelsea
- Get incarnated Chelsea Kaka
- Strikethrough Drogba, Abramovich Choose Neymar
- Suggest Torres Fabregas at Arsenal Survive
- Meregalli: Atmosphere at Yamaha GREAT
- Bank di Indonesia Paling Boros di ASEAN
- CIMB: This bank with the High Growth 2011
- Menkominfo Bikin Tweet Seperti Anak ABG
- Inilah Sensor Gerak untuk PC Pertama di Dunia
- Asus Transformer, Tablet Prime Android 3.0
- Capello, Jose Mourinho said sarcastically
- City Kehilangan Jerome Boateng
- Kurang Tidur, Nafsu Makan Menggila
- Grand Selular Expo 2011
- Influenced by Japan's Global Automotive Industry
- Symantec: 80% Spam Emails In The World Is
- Ponsel Play Station Siap Beredar Bulan Ini
- XPERIA X10 Dapat Update OS Gingerbread
- Eximbank Dapat Kredit Rp1,7 Triliun dari ADB
- Operasi Bandara Lombok Kembali Molor
- Neymar Pilih Serie A daripada Premier League
- Nistelrooy Kembali ke MU?
- MU Ingin Sneijder Gantikan Scholes
- 4 Foods It Prevent Breast Cancer
- Battery Factory Exhaust Emissions, 1 Village Poiso...
- Round Five Observations of Mars
- World Famous Location at 1200 Dark Dark
- 132 Countries Participate Action Earth Hour Tonight
- Earth Hour, part of Jakarta Dark Dark
- Factory conditions Japan Komatsu Tsunami
- Beat Wales, UK Lead Group G
- Praise Capello Lampard Tactics
- Argentina is competed Young Stars
- Guardiola Ingin Permanenkan Afellay di Barca
- BlackBerry PlayBook Dukung Aplikasi Android
- Found, Mini Galaxy Around Milky Way
- Having an affair with Calo, 10 South Korean Diplom...
- Obama's White House Locked Out
- Gaji PNS Naik, Gaji Pejabat Negara Tetap
- SAHAM
- The Government Could Sell Shares of Private Companies
- Tender Gedung Baru DPR Libatkan KPK
- Working space for the DPR Rp800 Million Worth
- Drogba Want to Stay Shown at the 2014 World Cup
- Opponent Benin, Cote d'Ivoire Without Toure
- Government Asked to Supply Gas to Japan soon
- Neuer Reject Substitute Van der Sar at United
- Four Facts About Caffeine
- Empat Fakta Seputar Kafein
- Toyota Number One in the World
- Duet Teeth Red Bull Performance in a Free Exercise
- Webber Renault and Mercedes Stay Alert
- Barbie Hsu Crying on Wedding Day
- Anang: Yanti Punya Cinta, Saya Juga Punya
- Three Signs The Secrets He Saves
-
▼
Maret
(206)
0 komentar:
Posting Komentar