Science & technology
Twitter restores TweetDeck servicePublish Date: Jun 11, 2014
Twitter restores TweetDeck service
  • mail
  • img
newvision

TWITTER took its browser-based TweetDeck service offline Wednesday as it wrestled with a vulnerability that criminals exploited to tweet script-filed messages to victims' feeds.

"We've temporarily taken TweetDeck services down to assess today's earlier security issue," Twitter's TweetDeck account reported.

An hour later, the service was back up and running. "We've verified our security fix and have turned TweetDeck services back on for all users. Sorry for any inconvenience," TweetDeck said, again on Twitter

A cross-site scripting (XSS) vulnerability was to blame, researchers quickly said.

"This vulnerability very specifically renders a tweet as code in the browser, allowing various cross-site scripting (XSS) attacks to be run by simply viewing a tweet," said Trey Ford, a security strategist at Rapid7.

"The current attack we're seeing is a 'worm' that self-replicates by creating malicious tweets."

The vulnerability primarily affected users who had installed the TweetDeck Web app designed for Google's Chrome browser, but there were scattered reports that the bug also impacted the Windows client application and the Web app for Firefox.

Twitter itself, including its website-based feed and those it served to its own and third-party desktop and mobile clients, was unaffected.

Earlier Wednesday, TweetDeck urged users to log out of the service, then log back in, a process that was meant to clear users' sessions and thus prevent any additional malicious tweeting.

Some who followed instructions, however, continued to see unauthorized tweets on their feeds.

The statements, comments, or opinions expressed through the use of New Vision Online are those of their respective authors, who are solely responsible for them, and do not necessarily represent the views held by the staff and management of New Vision Online.

New Vision Online reserves the right to moderate, publish or delete a post without warning or consultation with the author.Find out why we moderate comments. For any questions please contact digital@newvision.co.ug

  • mail
  • img
blog comments powered by Disqus
Also In This Section
Taiwan
Taiwan's struggling smartphone maker HTC said Thursday it expected revenue in the July-September quarter to up to 35 percent from Q2 as sales slowed for some products....
Fujitsu says returns to profit on strong PC, mobile sales
Fujitsu said Thursday it had swung back to profitability in the April-June period, with the Japanese information technology giant''s results driven by upbeat demand for its personal computer and mobile products....
Microsoft to comply with China amid probe
MICROSOFT has said it seeks to comply with Chinese law, after Beijing announced an anti-monopoly investigation of the US technology giant over its business practices...
Science of brain signals opens new era for advertising
Companies in the near future will be able to test public reaction to advertisements, music and films before they are released by monitoring the brain signals of a select group as they watch a trial....
Samsung delays Tizen smartphone sales launch
Samsung Electronics said Monday it would postpone the roll-out of its new smartphone based on Tizen, a home-grown operating system aimed at breaking away from Google''s Android system....
Chinese regulators visit Microsoft offices: Dow Jones
Officials from China''s corporate regulator paid visits Monday to software giant Microsoft''s offices in four cities in the country, Dow Jones Newswires reported, citing people familiar with the matter....
Should private schools and institutions be given tax exemption?
Yes
No
Can't Say
follow us
subscribe to our news letter