Tweetdeck Hack Exposes Javascript Vulnerability

Users got strange messages from their Tweetdeck clients, and a string of code was retweeted all over the Twittersphere.

tweetdeck

Well it’s another day, and there’s been another hack. This time around it’s Tweetdeck, a third party Twitter app that was acquired by the company in May 2011. The attack was enabled by a very simple, and apparently easy to overlook, piece of code known as xss — cross-site scripting.

Yesterday, Tweetdeck users started getting strange messages from their Tweetdeck clients such as popup dialog boxes that said “yo!” and “Never gonna give you up, never gonna let you down.”

AW+

WORK SMARTER - LEARN, GROW AND BE INSPIRED.

Subscribe today!

To Read the Full Story Become an Adweek+ Subscriber

View Subscription Options

Already a member? Sign in