Twitter #Hacked 111
Posted
by
timothy
from the coz-it's-a-hashtag-see dept.
from the coz-it's-a-hashtag-see dept.
theodp writes "Earlier this week, hackers gained access to Twitter's internal systems and stole information, compromising 250,000 Twitter accounts before the breach was stopped. Reporting the incident on the company's official blog, Twitter's manager of network security did not specify the method by which hackers penetrated its system, but mentioned vulnerabilities related to Java in Safari and Firefox, and echoed Homeland Security's advisory that users disable Java in their browsers. Sure, blame everything on Larry Ellison. Looks like bad things do happen in threes — Twitter's report comes on the heels of disclosures of hacking attacks on the WSJ and NY Times."
Re:Discrimination (Score:5, Informative)
And The Washington Post (Score:5, Informative)
For those keeping score:
Re: Safari and Firefox (Score:5, Informative)
They'd have to be both - as in a Mac running 10.6 or earlier since Apple removed Java from the OS and blocked old versions. Heck, a couple of days ago Apple blocked ALL versions of Java (they set the minimum version to 0.0.01 above the current one - Oracle just released it that was 0.0.02 above their previous version).
Apple basically kicked Java to the curb with Flashback - they removed their version of Java from the OS (by blocking it, requiring install of the Oracle one). And the Java plugin for Safari is disabled by default - you can enable it, but I believe it disables itself automatically 30 days later, so you have to re-enable it again.
Re:bad things do happen in threes (Score:5, Informative)
Re:Corporate Responsibility (Score:5, Informative)
They DID. My account was compromised. I got an email.
Rubbish (Score:5, Informative)
If a security hole in Java running on a Twitter user's browser allowed someone to get to Twitter's internal data (i.e. not just the data of the user whose browser who had Java) - then it's a security hole in Twitter.
I think Twitter is being dishonest here.
Re:Does it mean... (Score:5, Informative)
Someone inside Twitter's network had Java enabled, and got attacked. Hackers are now inside Twitter and can start poking around.