Results 1 to 5 of 5
  1. #1
    Malware Hunter
    Overall activity: 0%

    Join Date
    Sep 2009
    Location
    Kolkata, India
    Posts
    485
    Liked
    104 times
    Points
    6,801

    Angry Newest Hack circulating in Facebook.

    I guess nobody experienced this before. I googled for it only to find a couple of forums talking about it vaguely. I guess I'm the first one to raise this topic, so here goes.

    One of my friends suddenly popped up in the chat box saying he has just photoshopped me, offering me a link to my "modified" image. The link turned out to be leading to a FB app. I have a test profile in Facebook other than my real one. I copied the link and went to it after logging in the test profile. I clicked on "Allow" and next moment, the chat box of my test profile opened and the same link was sent to all people online.

    ==Screenshot Attached===


  2. #2
    Whiz Kid
    Overall activity: 0%

    Join Date
    Sep 2008
    Location
    Albania
    Posts
    1,771
    Liked
    80 times
    Points
    20,857
    This is not new. In FB there are lot of apps like this one that automaticlly spams your friends through chat even if you're online.

    Screw Google! Ask me!


  3. #3
    The Specialist *
    Overall activity: 76.0%

    Join Date
    May 2010
    Location
    KOLKATA
    Posts
    5,162
    Liked
    731 times
    Points
    47,580
    Hmm cool one .
    I don't need to know everything, I just need to know where to find it, when I need it.

  4. #4
    Administrator
    Overall activity: 62.0%

    Join Date
    Nov 2006
    Location
    Malaysia
    Posts
    9,804
    Liked
    1656 times
    Points
    48,752
    I guess the hack only works if the user clicks the Allow button.
    I don't think your login information is being stolen after clicking the Allow button though... It's an app that makes you send links to your contacts.
    Well I might be wrong.

  5. #5
    Guest
    Overall activity: 54.0%

    Join Date
    May 2007
    Location
    Philippines
    Posts
    4,006
    Liked
    710 times
    Points
    47,645
    Clickjacking, also known as a "UI redress attack", is when an attacker uses multiple transparent or opaque layers to trick a user into clicking on a button or link on another page when they were intending to click on the the top level page. Thus, the attacker is "hijacking" clicks meant for their page and routing them to other another page, most likely owned by another application, domain, or both.
    By simply ignoring any shared links, you have already defeated its purpose. Apart from the other crazy stuff, it's one of the most annoying thing I've ever seen in fb. Don't allow trigger-happy habit fools you!

    ---
    http://community.websense.com/blogs/securitylabs/archive/2011/03/28/Italian-Model-Wardrobe-Malfunction-on-Live-TV.aspx
    "Stars and the Sun"


 

 

Similar Threads

  1. Replies: 12
    Last Post: 01-31-2011, 04:12 AM
  2. Replies: 8
    Last Post: 09-24-2010, 11:09 AM
  3. AV Comparatives : the newest report
    By thathagat in forum Spyware/Viruses
    Replies: 32
    Last Post: 03-24-2010, 05:45 AM
  4. Nvidia driver alert 196.75 newest one
    By richie1913 in forum General Forum
    Replies: 5
    Last Post: 03-07-2010, 03:54 PM

Tags for this Thread

All times are GMT +8. The time now is 09:44 AM.