MySpace has a problem: Month of bugs
Two hackers going by the names of Mondo Armando and Müstaschio promise to begin disclosing security vulnerabilities in MySpace, News Corp.’s popular social networking site, every day next month. “The purpose of the exercise is not so much to expose MySpace as a hive of spam and villainy (since everyone knows that already), but to highlight the monoculture-style danger of extremely popular websites,” wrote Mondo Armando in an e-mail interview. “We could have just as easily gone after Google or Yahoo or MSN or IDG or whatever. MySpace is just more fun, and is becoming notoriously [obnoxious] about responding to security issues,” he said.
These “Month of Bugs” projects have become a way for hackers to bring attention to both themselves and to security problems in certain types of products. Well-known hacker HD Moore kicked off the craze last year when he published one browser bug per day for the month of July. His effort was followed by a “Month of kernel bugs,” a “Month of Apple Bugs,” and a “Month of PHP Bugs.” They intend to primarily publish cross site scripting bugs, which can allow an attacker to execute malicious script within a victim’s browser, but they may also publish bugs that affect browsers or technologies like Flash or QuickTime. You can find out more information on their project’s blog. Good for me I don’t have any profile at MySpace – I simply never found the glory of this service.
Source: PCWorld


Comments(8)
Ha ha. Take that emo’s .
now that’s going to be a fun month
myspace is so lame it infact just made me cry
YOU GUYS ARE SO BAD ASS! YOU DON’T USE MYSPACE! OMG! I WANT TO F*CK YOU!
myspace = full of spam…seems to be a waste of money
Z stop using caps you cunt and go crawl into your myspace persona and wait for the bug to come and eat you!
I’m confused, are Z trying to give us sexuell favors or is it a death threat?
Also, any form of none anonymous networking page is made if fail and aids.
@sage you wanna retype that last sentence in a language that atleast RESEMBLES english?
I don’t use that garbage either, I don’t go for sites that are made BY shutins, FOR shutins, that attracts more shutins.
Anyways, i have a major problem with these guys making these exploits so public. Don’t try to say it’s to show the holes thats bs.
The fact is, making these exploits public and easy means more script kiddies fucking with our shit. And those of us at the NTi forums can all say this “No more script kiddies plz”