funsec mailing list archives

MySpace 'Superworm' Creator Sentenced to Probation, Community Service


From: "Fergie" <fergdawg () netzero net>
Date: Thu, 1 Feb 2007 21:41:56 GMT

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Via SC Magazine Online.

[snip]

The man responsible for unleashing what is believed to be the first
self-propagating cross-site scripting worm has pleaded guilty in Los
Angeles Superior Court to charges stemming from his most infamous hacking.

Samy Kamkar, who was 19 when he unleashed the attack on MySpace.com in
October 2005, was sentenced to three years of probation and ordered to
perform 90 days of community service, according to a MySpace statement
released Wednesday.

Kamkar also must pay an undisclosed amount of restitution to MySpace, and
he is banned from accessing the internet for personal reasons for an
unknown amount of time, according to the statement.

Kamkar, using a programming technique known as Asynchronous JavaScript and
XML (AJAX) that permitted browsers to execute malicious code, was able to
circumvent MySpace’s strong JavaScript filters. The infection spread like
wildfire, adding one million "friends" to Kamkar’s profile within several
hours, in addition to placing the string "but most of all, Samy is my hero"
on each of his victims’ profiles.

[snip]

More:
http://www.scmagazine.com/uk/news/article/630543/myspace-superworm-creator-
sentenced-probation-community-service/

- - ferg

-----BEGIN PGP SIGNATURE-----
Version: PGP Desktop 9.5.3 (Build 5003)

wj8DBQFFwl6cq1pz9mNUZTMRAtonAJkBApZA9BuXZxjTDydcnB9eADzLTgCgybOp
0t+wewiKDxMMorGHiARqksE=
=5cWh
-----END PGP SIGNATURE-----


--
"Fergie", a.k.a. Paul Ferguson
 Engineering Architecture for the Internet
 fergdawg(at)netzero.net
 ferg's tech blog: http://fergdawg.blogspot.com/


_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.


Current thread: