Save over 40% when you secure your tickets today to TNW Conference 💥 Prices will increase on November 22 →

This article was published on April 12, 2009

Second Twitter worm running rampant, care of Mikeyy.


Second Twitter worm running rampant, care of Mikeyy.

**Update**

Twitter has posted an update on went occurred from their perspective. In summary, it appears that they have had to deal with three rounds of malicious attacks, they identified and deleted almost 10,000 tweets in total that could have potentially spread the worm.

It looks like they may be taking legal action, just as MySpace did when a similar worm was unleashed.

No sooner had we posted about a first Twitter worm being resolved, we’ve now discovered via Mashable (and verified ourselves) that a second Twitter worm is alive and spreading on Twitter.

Created by the same 17 year old StalkDaily developer Mikey Mooney, the worm apparently uses the same method of infiltration – one which Twitter had supposedly fixed.

The 💜 of EU tech

The latest rumblings from the EU tech scene, a story from our wise ol' founder Boris, and some questionable AI art. It's free, every week, in your inbox. Sign up now!

Similarly, this worm infiltrates Twitter profiles and posts status messages such as:

Man, Twitter can’t fix sh*t. Mikeyy owns. :)
Dude, Mikeyy is the sh*t! :)
Twitter should really fix this…

picture-141

Why?

As we mentioned earlier, Mikeyy appears to be doing this primarily out of boredom. In an email he states:

“I am the person who coded the XSS which then acted as a worm when it auto updated a users profile and status, which then infected other users who viewed their profile. I did this out of boredom, to be honest. I usually like to find vulnerabilities within websites and try not to cause too much damage, but start a worm or something to give the developers an insight on the problem and while doing so, promoting myself or my website.”

To keep yourself safe, you are advised to:

1.Turn off javascript
2.clean settings
3.reset colors in design (with javascript on)
4.get pword reset
5. Clear Cache
6. Try not to visit Twitter profiles (use a 3rd party app)

Get the TNW newsletter

Get the most important tech news in your inbox each week.

Also tagged with