The names and faces behind the ‘onMouseOver’ Twitter worm attack

Read more in my article at Naked Security.

1 sec read

Twitter ‘onMouseOver’ security flaw widely exploited

The Twitter website is being widely exploited by users who have stumbled across a flaw which allows messages to pop-up and third-party websites to open in your browser just by moving your mouse over a link. In a worrying development, messages are also spreading virally exploiting the cross-site-scripting (XSS) vulnerability without the consent of users.

18 sec read