Sunday, January 24, 2010
Twitter cuts feature on site over security flaw
Twitter has temporarily disabled one of the features on its website after a security researcher warned of a programing flaw that left the login credentials of its users vulnerable to hackers. Twitter co-founder Biz Stone said in an email that the company had temporarily cut off access to a feature that lets users display Twitter updates on their websites by using Flash technology. "Our team has disabled the Flash widget while we look into the problem," Stone said. Mike Bailey, a senior security analyst with Foreground Security of Orlando, Florida, said that the problem exploits a widely known vulnerability in Adobe Systems Inc's Flash programing language. Adobe has told programmers how to address the vulnerability, which was first discovered in 2006, Bailey added, but noted the operators of many websites have failed to respond to those warnings. The microblogging site's huge popularity has made it a prime target for hackers looking to spread malicious software to Twitter's millions of users. "As simple as the attack is, I've been finding them all over the place," Bailey said. Officials with Adobe declined to comment. A hacker last month briefly hijacked the Twitter site and redirected it to one that claimed to represent a group calling itself the Iranian Cyber Army. That high-profile attack -- by a perpetrator who stole credentials to the account that Twitter uses to route its traffic -- did not compromise credentials of any Twitter users. Bailey said his analysis of the Twitter site showed that it could have been vulnerable to attacks for more than a year, but that it was impossible to know whether hackers had actually exploited the Adobe flaw. He is scheduled to discuss his research on the Twitter flaw at the Black Hat DC security research conference in Washington, which begins on February 2.
Subscribe to:
Post Comments (Atom)
Followers
Blog Archive
-
▼
2010
(294)
-
▼
January
(83)
- PCOS field test fails
- Critics dampen hype over Apple's iPad
- Review of automation software to start February
- What unified communications can do for your business
- Poll machine fails test after Comelec uses defecti...
- Why old media loves Apple's newest thing
- Books on iPad Offer Publishers a Pricing Edge
- Mobile Habits Changing As Smartphones Go Mass Market
- Giving Mobile Ads a Makeover
- Apple's Jobs unveils new tablet computer, the iPad
- FIRST HYBRID NOTEBOOK/TABLET: THE LENOVO IDEAPAD U1
- Twitter to hold 'Chirp,' first conference for deve...
- Palace allows Schutzengel Telecom congressional fr...
- Philippines Has the 12th Most Number of Twitter Users
- Globe unit secures govt nod to expand remittance s...
- Broadband speeds seen to grow tenfold
- Ongpin-owned telecom bags permanent permit
- Sun Cellular posts 10-million subscriber count in ...
- People don't have to rely just on Twitter, Google ...
- Twitter cuts feature on site over security flaw
- Anti-child-porn, anti-cyber-boso laws could lead t...
- Twitter users respond to Jason Ivler’s arrest
- Tablet PCs
- Attacks from file-sharing networks to escalate
- 43,000 flying voters ere discovered because of AFIS
- Mayen Austria, Jason Ivler top local Google search...
- Twitter has begun rolling out location-based trend...
- Low-tech radios connect some Haitians
- 2010: Innovation or interruption?
- Click Fraud Gets More Elaborate with 'Real' Purchases
- YouTube streamlines its video-viewing page
- Your Cell Phone Is A Homing Beacon
- Nokia Phones Offering Free GPS for 74 Countries
- Cybercrime shakes up trust in Facebook, Friendster
- Wednesday whales take down Twitter
- YouTube getting into movie rental business
- 'Sikat,' RP's second solar car, embarks on nationw...
- Bayan Broadband offers EVDO at Php699
- Sun Easy Postpaid
- Globe SUPER-UNLI
- CEA Advances Mobile DTV Through Plugfest
- SANYO Introduces World’s Slimmestand Lightest Xac...
- SANYO Announces the World’s Smallest, Lightest, an...
- Samsung Launches New Slim External DVD Writer for ...
- One PC, Two Devices: Lenovo Reveals the Industry’s...
- TV Programming in Real Time on Your Cell?
- Glide Launches Google Chrome Browser OS at the Con...
- BlackBerry Bold 9000 Specifications
- BlackBerry Curve 8900 Specifications
- BlackBerry Storm 9500 Specifications
- BlackBerry Pearl 8120 Specifications
- BlackBerry Curve 8520 Specifications
- ADVISORY TO SMART SUBSCRIBERS Per Pulse
- Sun Double Unlimited 249
- Nokia E72
- LG GD510 Pop
- bayanWIRELESS landline Voice SMS
- bayanWIRELESS landline PrePAID
- Nokia 5230
- PLDT internet@home
- GOOGLE NEXUS ONE
- Sun Cellular Call & Text Rates
- Sun Cellular Daylite Call and Text Unlimited
- Sun Cellular Regular Load
- Sun Cellular BudgeTXT
- Sun Cellular Call & Text Combo
- Sun Cellular Text Unlimited
- PLDT LANDLINE PLUS TODO DISKWENTO PLANS
- Globe DUO Prepaid
- GLOBE SUPER DUO
- Sun Double Unlimited 249!
- MODU the world’s lightest, fully loaded phone
- BOOST YOUR TATTOO SIGNAL
- GLOBE TATTOO WIFI
- GLOBE SURF ALL DAY
- GLOBE TATTOO UNLICHAT+
- GLOBE TATTOO SULITCHAT
- Globe UNLITXT ALL DAY
- GLOBE PER PULSE BILLING
- Globe TXTOTHERS 20
- Globe SULITXT 15
- Globe ImmortalCall+
- Globe IMMORTALTXT
-
▼
January
(83)
No comments:
Post a Comment