{"id":279,"date":"2006-07-19T11:10:21","date_gmt":"2006-07-19T05:10:21","guid":{"rendered":"http:\/\/www.dotcomunderground.com\/blogs\/2006\/07\/19\/worm-behind-myspace-profiles\/"},"modified":"2006-07-19T11:10:21","modified_gmt":"2006-07-19T05:10:21","slug":"worm-behind-myspace-profiles","status":"publish","type":"post","link":"https:\/\/www.dotcomunderground.com\/blogs\/2006\/07\/19\/worm-behind-myspace-profiles\/","title":{"rendered":"Worm behind MySpace profiles"},"content":{"rendered":"<p>A worm is targeting MySpace users, compromising their &#8220;About me&#8221; pages and infecting visitors to them, Symantec has warned. <\/p>\n<p>When a logged-in MySpace user goes to another member&#8217;s &#8220;About me&#8221; page affected by the ACTS.Spaceflash worm, they are quietly redirected to a URL that holds a malicious Macromedia Flash file, the security company said in an advisory on Spaceflash Tuesday. That file, in turn, will replace the visitor&#8217;s own &#8220;About me&#8221; page with one that is compromised. <\/p>\n<p>&#8220;It&#8217;s an annoyance, at this point, for users, but the capability exists where it can lead to malicious actions and steal sensitive information,&#8221; said Dean Turner, senior manager of Symantec, which currently rates the Spaceflash threat as low. <\/p>\n<p>Figures were not readily available on the number of MySpace users who were infected by the worm, Turner said. <\/p>\n<p>The worm takes advantage of the way Adobe Systems&#8217; Macromedia Flash technology, used to display media on the Internet, handles its action scripting for movies and music. <\/p>\n<p>&#8220;Adobe recognized this vulnerability in Flash 8 and fixed it in its latest version, which is why we&#8217;re urging all members to upgrade to Flash 9,&#8221; Hemanshu Nigam, the chief security officer of MySpace, said in a statement. <\/p>\n<p>Symantec is advising MySpace users to disinfect their &#8220;About me&#8221; page by deleting a specific line of code, or to disable their use of JavaScript on MySpace.com to mitigate the problem. <\/p>\n<p>Content uploaded to MySpace and other social-networking sites needs to be validated and vetted by the Web site operators to ensure users do not infect each other, Turner said. <\/p>\n<p>The Spaceflash worm is not the first to hit MySpace. Last fall, it was hit by the Samy worm, which added a million users to the friends list of the worm&#8217;s author. <\/p>\n","protected":false},"excerpt":{"rendered":"<p>A worm is targeting MySpace users, compromising their &#8220;About me&#8221; pages and infecting visitors to them, Symantec has warned. When a logged-in MySpace user goes to another member&#8217;s &#8220;About me&#8221; page affected by the ACTS.Spaceflash worm, they are quietly redirected to a URL that holds a malicious Macromedia Flash file, the security company said in [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[4],"tags":[88,304,29],"class_list":["post-279","post","type-post","status-publish","format-standard","hentry","category-tech","tag-myspace","tag-tech","tag-technology"],"_links":{"self":[{"href":"https:\/\/www.dotcomunderground.com\/blogs\/wp-json\/wp\/v2\/posts\/279","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.dotcomunderground.com\/blogs\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.dotcomunderground.com\/blogs\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.dotcomunderground.com\/blogs\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.dotcomunderground.com\/blogs\/wp-json\/wp\/v2\/comments?post=279"}],"version-history":[{"count":0,"href":"https:\/\/www.dotcomunderground.com\/blogs\/wp-json\/wp\/v2\/posts\/279\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.dotcomunderground.com\/blogs\/wp-json\/wp\/v2\/media?parent=279"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.dotcomunderground.com\/blogs\/wp-json\/wp\/v2\/categories?post=279"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.dotcomunderground.com\/blogs\/wp-json\/wp\/v2\/tags?post=279"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}