Skip to comments.
Hacked Ad Seen on MySpace Served Spyware to a Million
Hacked Ad Seen on MySpace Served Spyware to a Million ^
| July 19, 2006
| Brian Krebs
Posted on 07/19/2006 10:21:24 PM PDT by burzum
An online banner advertisement that ran on MySpace.com and other sites over the past week used a Windows security flaw to infect more than a million users with spyware when people merely browsed the sites with unpatched versions of Windows, according to data collected by iDefense, a Verisign company.
(Excerpt) Read more at blog.washingtonpost.com ...
TOPICS: Crime/Corruption; Culture/Society
KEYWORDS: d; lowqualitycrap; microsoft; microsoftsecurity; myspace; spyware; windows
Navigation: use the links below to view more comments.
first 1-20, 21-40, 41-60, 61-63 next last
If you haven't updated your computer in a while, you should make sure you perform a Windows Update to prevent this vulnerability from giving you spyware. I'm guessing that not many Freepers frequent MySpace often, but perhaps you have family members who do.
The WMF vulnerability was discovered in late December of 2005, and a patch was issued in January. But it is a very severe issue, and the fact that an advertising firm would intentionally use it in ads is criminal.
1
posted on
07/19/2006 10:21:28 PM PDT
by
burzum
To: burzum
Thank goodness I live in the 21st century and use Firefox
To: burzum
I will do a scan, I caught the dog on Myspace the other day typing away.
3
posted on
07/19/2006 10:23:30 PM PDT
by
A CA Guy
(God Bless America, God bless and keep safe our fighting men and women.)
To: Admin Moderator
Oops, can you change the source term of this thread to say "The Washington Post". Sorry for the inconvenience.
4
posted on
07/19/2006 10:25:25 PM PDT
by
burzum
(Despair not! I shall inspire you by charging blindly on!--Minsc, BG2)
To: burzum
This is one time a class action works for me. MySpace and the advertiser. Make both of them hurt a lot.
To: A CA Guy
Bad Pooch! (Cute one though.)
6
posted on
07/19/2006 10:35:07 PM PDT
by
hotshu
To: A CA Guy
your best ever post Will U marryMe? I am aLab.
7
posted on
07/19/2006 10:39:28 PM PDT
by
Global2010
(Go for the Last Round up... Getta along letta Doggies Getta Along)
To: Global2010
He's four pounds of pure male doggie and would be up to the challenge I am sure.
8
posted on
07/19/2006 10:42:44 PM PDT
by
A CA Guy
(God Bless America, God bless and keep safe our fighting men and women.)
To: youthgonewild
Uh. Firefox is just as vulnerable to a lot of stuff.
My laptop picked up something nasty and I thought I was safe using Firefox.
Be on guard for anything, whatever you use.
9
posted on
07/19/2006 10:48:21 PM PDT
by
Crazieman
(The Democratic Party: Culture of Treason)
To: LesbianThespianGymnasticMidget
>
This is one time a class action works for me. MySpace and the advertiser. Make both of them hurt a lot. Huh? What about the foolish user who ignores massive warnings and doesn't use Automatic Updates or patch their system?
Let me put it this way:
1. A car manufacturer builds a car with an engine that requires oil for lubrication, and you buy the car from a car dealer who encourages you to drive around in it.
2. The manufacturer tells you in the manuals and in regular postings on the web, that you're supposed to check the oil regularly and keep it filled.
3. There are a huge number of news articles in the press you read daily that tell horror stories about what happens to people who don't check their oil regularly -- their engines sieze and blow up.
4. You (the buyer) ignore the manufacturer's warnings in the manual, and you ignore the regular postings on the net, and you ignore all the news articles.
5. One day, your oil runs out and your engine seizes up.
6. YOU INSTIGATE A CLASS ACTION AGAINST THE CAR DEALER??? OR AGAINST THE MANUFACTURER???
Sorry, that's freakin' lame. Anybody who hasn't patched their Windows systems in over 6 months has earned their viruses fair and square.
10
posted on
07/19/2006 10:51:33 PM PDT
by
dayglored
(Listen, strange women lying in ponds distributing swords is no basis for a system of government!)
To: All
Firefox users weren't affected even if their Windows wasn't patched.
To: A CA Guy
12
posted on
07/19/2006 10:53:33 PM PDT
by
Global2010
(Go for the Last Round up... Getta along letta Doggies Getta Along)
To: Crazieman; youthgonewild
>
Uh. Firefox is just as vulnerable to a lot of stuff. The WMF vulnerability is in the operating system. It's not dependent on which browser you use.
I'm a big Firefox fan myself, but it's not a panacea when you run it on Windows. Windows is a swiss cheese for security.
Use Automatic Updates. Patch your systems. This was fixed 6 months ago.
It's unbelievable to me that people still ignore this. My mom just turned 82 last week, and SHE knows how to patch her own Windows system. C'mon folks.
13
posted on
07/19/2006 10:55:12 PM PDT
by
dayglored
(Listen, strange women lying in ponds distributing swords is no basis for a system of government!)
To: Crazieman
Yes, Firefox was vulnerable to the WMF exploit, but not in the same way as IE. You had to explicitly execute the file, unlike IE.
In general, your browser will not protect you from your operating system's flaws. This is why if you use Windows, you need to make sure you perform the monthly updates, each and every month.
The good thing about Firefox is that it isn't the major target right now. Spyware or malware writers assume that IE users are an easier target and write their software accordingly.
14
posted on
07/19/2006 10:55:13 PM PDT
by
burzum
(Despair not! I shall inspire you by charging blindly on!--Minsc, BG2)
To: CaliGangsta
>
Firefox users weren't affected even if their Windows wasn't patched. Firefox is not a panacea. Most users aren't savvy enough to keep track of thousands of exploits and exactly which ones are specific to I.E. or Firefox.
The better observation is that an unpatched system is like having sex with every joker on Main Street. Your chances of catching something are nearly 100%, regardless of what browser you're using.
15
posted on
07/19/2006 10:58:11 PM PDT
by
dayglored
(Listen, strange women lying in ponds distributing swords is no basis for a system of government!)
To: burzum
There are some good Republican forums on MySpace...
To: Crazieman
My laptop picked up something nasty and I thought I was safe using Firefox. Don't be trolling those websites. You'll be fine.
17
posted on
07/19/2006 11:02:13 PM PDT
by
JennysCool
(Roll out the Canarble Wagon!)
To: dayglored
So you are saying it is OK to send out spyware and worms and trojans and such?
what you are saying is akin to saying that if you don't lock your car, a thief has a right to open it up and take your stuff out of it. After all, YOU didn't lock it, so you deserved to get robbed, right? And you have no legal right to demand action against the crook.
Same logic.
18
posted on
07/19/2006 11:03:04 PM PDT
by
Nik Naym
To: A CA Guy
Darling doggie! Looks like one who used to live in my neighborhood. That little dog would walk around like he was a big manly dog. Sadly, the neighbor's pit killed it in front of my driveway.
19
posted on
07/19/2006 11:03:35 PM PDT
by
HungarianGypsy
(Any spelling or grammatical errors are the fault of the baby .)
To: Crazieman
No spyware for the Mac. ;)
20
posted on
07/19/2006 11:03:58 PM PDT
by
oolatec
Navigation: use the links below to view more comments.
first 1-20, 21-40, 41-60, 61-63 next last
Disclaimer:
Opinions posted on Free Republic are those of the individual
posters and do not necessarily represent the opinion of Free Republic or its
management. All materials posted herein are protected by copyright law and the
exemption for fair use of copyrighted works.
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson