PSA: LJ media embedding hack

Sep 23, 2009 11:29

I know I seldom checked news regularly, so there must be more out there ( Read more... )

Leave a comment

Comments 13

moon_ferret September 23 2009, 16:14:06 UTC
Mine was hacked. Fuck.

GAH.

Reply

moon_ferret September 23 2009, 16:15:57 UTC
And I think my password was changed. You bastards.

Reply

smarriveurr September 23 2009, 16:19:24 UTC
Your password doesn't work... you aren't logged in now? I am confused.

Reply

smarriveurr September 23 2009, 16:17:04 UTC
So far, it seems the only real risks were

A) Private entries turned public
B) Email harvesting

And the latter isn't even that big a deal unless your email account is an old inactive hotmail account or somesuch, so I wouldn't worry unduly. In fact, if this infection operated like they say, it's probably the best first exploit on the security hole you could hope for - nobody lost content, passwords weren't altered, etc, etc.

Reply


(The comment has been removed)

smarriveurr September 24 2009, 00:37:34 UTC
Nope! Apparently it's also an excellent unsecure vector for crossdomain attacks!

Reply


Leave a comment

Up