广告
广告

Twitter的新鼠标覆盖功能是广泛滥用的安全漏洞

Twitter堕落的猎物被黑客受欢迎程度所吸引:它具有邪恶的安全漏洞,可让访客进入其新刷新的网站 - 所有需要您要做的就是将鼠标指针置于恶意链接上。它被广泛滥用。

推特

广告
广告

推特‘堕落的黑客因其日益普及而吸引的黑客猎物:它具有邪恶的安全漏洞,可为游客提供新刷新网站 - 所有需要您做的就是漂移您的鼠标指针恶意链接。它被广泛滥用。

黑客攻击非常简单:它所需的只是推文中的嵌入式链接。When you visit anyone’s profile that contains the tweet–either as an official or unofficial “RT” retweet–by going to the relevant page on Twitter.com and then let your mouse pointer move over the link, Twitter’s code currently attempts a quick preview of the contents of the link. And voila! Instead of directing you to where you think you may be going, you could end up with a porn site on your screen.

But there’s some big potential for abuse here: By redirecting you to a site that contains malicious code, hackers could plant a virus on your machine (particularly if you’re an unwitting victim, or if you’re not so Net-savvy), or at the least some persistent spam advertising pop-ups may be launched.

广告
广告

Twitter肯定知道这个“鼠标”问题(我们已经通过电子邮件将其发送给他们以进行检查),并且可能正在准备修复程序。Until they do there are two easy ways to avoid the problem–don’t click on a link that looks wrong somehow (some of the more jokey tweets that exploit the loophole conceal the text of a link behind a colored bar, or have extremely large or small font sizes) or simply to avoid going toTwitter.com并使用第三方客户端访问您的Twitter提要,就像许多人一样。

The biggest take-away from this news is that now that Twitter is gaining such a big following online, and is emerging as a powerful and useful tool for all sorts of different reasons, it’s going to attract the attention of hackers and coding ne’er-do-wells the world over.

要跟上这个消息,请跟随我,套件伊顿,在Twitter上。

广告
广告

关于作者

我正在为Fast Company介绍科学/技术/一般开发和创新的节拍。德赢提款跟着我推特, 或者Google+我保证,您会听到很多有趣的东西。我还拥有博士学位,并从事专业科学家和戏剧技术员等角色...幸运的是,避免了像Bodyguard和Chicken Shed-Cleaner这样的工作(如果您得到该参考,则奖励积分!)

更多的

#FCFestival将于今年9月返回纽约!立即获得门票!