PDA

View Full Version : Clickjacking Worm Exploits Facebook "Like" Feature



wraggster
May 31st, 2010, 20:23
For the last 24 hours, a series of attacks have exploited Facebook's 'Like' feature through a clickjacking vulnerability. Using subjects such as 'This Girl Has An Interesting Way Of Eating A Banana, Check It Out!' hackers have spread an attack that links to web pages that use invisible iFrames to trick users into saying they like the content. Users are presented with a innocent-seeming web page that says 'Click here to continue,' but clicking at any point on the page publishes the same message to their own Facebook page. Security blogger Graham Cluley says that hundreds of thousands of Facebook users have been hit, and offers advice on how to clean up affected Facebook profiles.

http://it.slashdot.org/story/10/05/31/1517232/Clickjacking-Worm-Exploits-Facebook-Like-Feature