I am planning to sell this domain including the content.

Please send your bid using the contact page.

Orkut is hit by worm

Yes, Orkut is hit by a self spreading worm which did not do any major damages(hopefully) except sending out scraps to your friends on behalf of you. This process repeats itself when someone views an infected scrapbook.

External links on this story:

http://www.pcworld.com/article/id,140653-c,worms/article.html

http://orkutplus.blogspot.com/2007/12/breaking-xss-in-scrapbook-if-you-open.html

Orkut allows embedding html into the scrapbook. One can add falsh objects also. It seems that the worm creator exploited this option to create the worm.

Seems Google guys have fixed it now, but it reminds everyone about how complex web application security is. Primarily handling Cross Site Scripting(XSS) attacks is very crucial for safe web applications.

As most of the Orkut users use the same gmail account with Orkut, Google should be very careful with Orkut and exploits like these can lead to great damages for the users. Imagine giving out your gmail authentication information to someone who you do not know, how bad it will be. These exploits can be such dangerous. Google guys should spend some of there bucks into safeguarding Orkut from further exploits. Wakeup Google, OpenSocial is not the only stuff you have to take care about Orkut, there is something more demanding your attention.

I suggest changing your Orkut or Google Account password regularly if it is the primary email you use it daily. Change your password at least once in two weeks.

You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.

Share your thoughts.

Your email is never published nor shared.

Required
Required

XHTML: You can use these tags: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <code> <em> <i> <strike> <strong>

Sponsors

About

Welcome to Orkut Apps Blog. This blog is started on 10-10-2007 to track the latest buzz about Orkut and Orkut Applications. Please see about page to know more about this blog.