Hi all,
SWIM is writing a proof of concept about a vuln in a medium size social networking site
(39K/day hits - top 80K alexa traffic rank - top 20K alexa US traffic rank)
So basically SWIM tells me it allows jscript to be run client side, on each profile view. When a logged in user visits an infected profile, their profile too gets infected - exponential growth - similar to hxxp://namb.la/popular
The worm then hides itself from user - only viewing the source will see the script tag. Also impossible once infected to clean - would need an admin to UPDATE WHERE CONTAINS the database.
Possibilities? well due to the ajax object, anythin the logged in user can do - the worm can do.. (messaging, posting, scraping, password)
ANYHOW! SWIM - knowing I am black hat has asked me to see of any non - intrusive | non-destructive ways to make some dosh - FOR INCLUSION IN HIS POC
** NOTE worm can be cleaned at any time by master control **
SWIM is writing a proof of concept about a vuln in a medium size social networking site
(39K/day hits - top 80K alexa traffic rank - top 20K alexa US traffic rank)
So basically SWIM tells me it allows jscript to be run client side, on each profile view. When a logged in user visits an infected profile, their profile too gets infected - exponential growth - similar to hxxp://namb.la/popular
The worm then hides itself from user - only viewing the source will see the script tag. Also impossible once infected to clean - would need an admin to UPDATE WHERE CONTAINS the database.
Possibilities? well due to the ajax object, anythin the logged in user can do - the worm can do.. (messaging, posting, scraping, password)
ANYHOW! SWIM - knowing I am black hat has asked me to see of any non - intrusive | non-destructive ways to make some dosh - FOR INCLUSION IN HIS POC
** NOTE worm can be cleaned at any time by master control **