<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>CounterMeasures -  A Security Blog » chatwebcamfree</title>
	<atom:link href="http://countermeasures.trendmicro.eu/tag/chatwebcamfree/feed/" rel="self" type="application/rss+xml" />
	<link>http://countermeasures.trendmicro.eu</link>
	<description>Trend Microâ€™s Rik Ferguson blogs about current security issues.</description>
	<lastBuildDate>Tue, 07 Feb 2012 17:51:43 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Chatwebcamfree Porn Hijacks Twitter Accounts</title>
		<link>http://countermeasures.trendmicro.eu/speaking-of-password-security-twitter-account-hijacks/</link>
		<comments>http://countermeasures.trendmicro.eu/speaking-of-password-security-twitter-account-hijacks/#comments</comments>
		<pubDate>Fri, 06 Mar 2009 19:12:37 +0000</pubDate>
		<dc:creator>Rik Ferguson</dc:creator>
				<category><![CDATA[Web 2.0]]></category>
		<category><![CDATA[chatwebcamfree]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[Twitter]]></category>

		<guid isPermaLink="false">http://countermeasures.trendmicro.eu/?p=47</guid>
		<description><![CDATA[It appears that there is a rash of Twitter account hijacking going on this evening. Hundreds of twitter accounts are being compromised and tweets are being posted encouraging users to make the accquaintance of a 23 year old female with a webcam&#8230; Â  So far over 700 Twitter accounts have been compromised in the two [...]<div class="addthis_toolbox addthis_default_style " addthis:url='http://countermeasures.trendmicro.eu/speaking-of-password-security-twitter-account-hijacks/' addthis:title='Chatwebcamfree Porn Hijacks Twitter Accounts '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></description>
			<content:encoded><![CDATA[<p>It appears that there is a rash of Twitter account hijacking going on this evening. Hundreds of twitter accounts are being compromised and tweets are being posted encouraging users to make the accquaintance of a 23 year old female with a webcam&#8230;</p>
<p>Â </p>
<p>So far over 700 Twitter accounts have been compromised in the two hours since 7pm GMT.</p>
<p>Â <img class="alignleft size-full wp-image-66" title="Rogue Tweet" src="http://countermeasures.trendmicro.eu/wp-content/uploads/2009/03/twitmess2.gif" alt="Rogue Tweet" width="507" height="244" /></p>
<p>The message reads &#8220;hey! 23/Female. Come chat with me on my webcam thingy here www.{BLOCKED}.com.&#8221;</p>
<p>Â </p>
<p>Â </p>
<div id="attachment_48" class="wp-caption alignleft" style="width: 459px"><img class="size-full wp-image-48  " title="chatree" src="http://countermeasures.trendmicro.eu/wp-content/uploads/2009/03/chatree.gif" alt="Search results from www.twitscoop.com" width="449" height="398" /><p class="wp-caption-text">Search results from www.twitscoop.com</p></div>
<p>Â </p>
<p>Â </p>
<p>Obviously we recommend against clicking on this link, it leads to a porn webcam portal which looks to have been designed with credit card harvesting in mind. Affected users should change their password to a secure one as soon as possible (see today&#8217;s earlier blog entry for advice).</p>
<p>Â <img class="alignleft size-full wp-image-76" title="pornsite" src="http://countermeasures.trendmicro.eu/wp-content/uploads/2009/03/pornsite.png" alt="pornsite" width="589" height="380" /></p>
<p>Â </p>
<p>Â </p>
<p>The porn webcam portal contains an obfuscated JavaScript that loads up porn related advertisments on the browsing computer. Do not visit the site, even out of curiosity.</p>
<p><img class="alignleft size-full wp-image-74" title="rik1" src="http://countermeasures.trendmicro.eu/wp-content/uploads/2009/03/rik1.jpg" alt="rik1" width="572" height="366" />Â </p>
<p>Â </p>
<p>It is unclear how the mass compromise occured, although with Twitterers willingness to enter their Twitter username and password into any number of third-party websites offering Twitter related services, the opportunities for cybercrime are many.</p>
<p>Â </p>
<p><strong>UPDATE</strong>: The folks over at Twitter have been busy sorting this compromise out and have blogged about it <a href="http://blog.twitter.com/2009/03/safekeeping-twitter-accounts.html">here</a>, they estimate that about 750 accounts were compromised.</p>
<p>Â </p>
<p>Incidentally it looks like Facebook was <a href="http://www.facebook.com/topic.php?uid=2347471856&#038;topic=10541">hit with a similar attack</a> about a month previously.</p>
<div class="addthis_toolbox addthis_default_style " addthis:url='http://countermeasures.trendmicro.eu/speaking-of-password-security-twitter-account-hijacks/' addthis:title='Chatwebcamfree Porn Hijacks Twitter Accounts '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></content:encoded>
			<wfw:commentRss>http://countermeasures.trendmicro.eu/speaking-of-password-security-twitter-account-hijacks/feed/</wfw:commentRss>
		<slash:comments>18</slash:comments>
		</item>
	</channel>
</rss>

