A worm is hijacking Tumblr blogs and posting spam, said to affect thousands of accounts (Update: Fixed)

A worm is hijacking Tumblr blogs and posting spam, said to affect thousands of accounts (Update: Fixed) ...

Reports are coming in of a Tumblr worm spreading on the microblogging platform. Among the victims are The Verge‘s and CNET‘s Tumblrs, which include a message about a ‘GNAA video’ post. It’s advisable for users to avoid visiting Tumblr blogs directly until the issue is resolved, and definitely not to click on any GNAA posts with a video inside nor accompanying links.

“There is a viral post circulating on Tumblr which begins “Dearest ‘Tumblr’ users”,” a Tumblr spokesperson said in a statement. “If you have viewed this post, please log out of all browsers that may be using Tumblr immediately. Our engineers are working to resolve the issue as swiftly as possible. Thank you.”

The affected Tumblr pages include lots of spam as well as the following alert:

So, what is the GNAA? The acronym stands for the Gay N***** Association of America, an anti-blogging Internet trolling organization. One of the member’s Twitter accounts points to the bronies Tumblr tag as a way to keep track of all the blogs being affected. The latest count is over 8,600 uniques. Gawker has interviewed the group’s spokesperson, who said Tumblr was apparently aware of the vulnerability for weeks.

In fact, Twitter users are already warning each other of the worm; here’s public service announcement from Matthew Keys, Reuters’ Deputy Social Media Editor:

Tumblr has also chimed in, with a rather redundant tweet:

We have contacted Tumblr about this issue. We will update this article if we hear back.

Update at 1:25PM EST: Tumblr says it has fixed the problem.

Image credit: Tess_Marie/Flickr

Read next: 1stdibs raises $42m from Index Ventures, Spark Capital and Benchmark to boost global expansion

Pssst, hey you!

Do you want to get the sassiest daily tech newsletter every day, in your inbox, for FREE? Of course you do: sign up for Big Spam here.