Desi Blog For Desi Crowd

Share It!


Xdzyne Xperts K-Link Productions Watch TV Shows Online Mobile N Mobile Sameer Baloch Your Link Here

Facebook Flood of Adult Content Comes from XSS Vulnerabilities

Facebook

Facebook came forward and gave some explanations on the recent spam campaign that’s been hitting the walls of their customers like a plague, smudging their profiles with Justin Bieber featured in adult postures.

Since many were claiming that a Facebook flaw could be behind the infection, the social networking website wanted to clear a few things and explained that actually, a cross-site scripting weakness in browsers is behind the whole incident, Sophos reports.

It’s not yet certain which of the browsers are susceptible and how exactly the infection works, but Zuckerberg’s company vows to be on the lookout for anything that could hint to the true origins of the issue that’s ruining their reputation.

In some unknown way, users are urged to copy and paste a malicious JavaScript code into their browser’s address bar and that’s how the malicious campaign begins.

Even if they’re not responsible for the incident, Facebook needs to do something to stop the spread, otherwise they can say farewell to their family friendly environment.

On the other hand, recent reports revealed that most internauts constantly fail to update their browsers and other software, so it shouldn’t surprise anyone if the virus actually relies on a weakness in an older version of a web application.

In almost every case, a Facebook scam leads to a survey, or other malicious page that in the end earns the cybercrooks some profit, but in this case no one can tell exactly where the masterminds gain.

The whole incident began some 48 hours ago when people started seeing violent and adult explicit pictures on the walls of their friends. Everyone was astonished since the victims couldn’t see anything suspicious on their walls, only their friends could.

Some suspected that it may be Anonymous’ Fawkes Virus, but it doesn’t seem to be their style and the group failed to answer my inquiry. I guess they’re too busy with the Occupy movements to launch such campaigns.

 

Originally Posted @ Softpedia

posted by St0L3n in cyber world and have No Comments

Place your comment

Please fill your data and comment below.
Name
Email
Website
Your comment
*

Page 1 of 11