how not to get your myspaced hacked
January 2, 2008, 2:44 pm
This is a public service announcement. Jan 2, 2008
one of your friends appears to send you a stupid thing to post as a comment. you know its spam, because your friends would never post anything that stupid.
when you get the request to post the comment and myspace asks you to deny/approve, deny it. then
then when you are on the SECOND screen when myspace asks you to confirm , hover the mouse over the deny/submit area and if it says a URL in your status bar at the bottom, then DON'T CLICK. just leave it.
the comment is already denied. myspace shouldn't be asking us twice anyway.
the spammers hide a link on top of that (the CSS extends the click area of the image) so that when you click on it some javascript gets executed and injects a message into myspace as though it were you. and it then sends that to all of us. its something like that, some cross site scripting attack. fascinating if you are into web tools, but ...
oh, and grow up and stop using myspace. that's just for kids and musicians.




Rgds!