Paid Advertising
web application security lab

Quicktime XSS Worm Hits Myspace

Billy Hoffman sent a link to the WASC list pointing to a link on the Spywareguide discussing a new Quicktime XSS worm that hit MySpace. I have a feeling there are more to come but this is pretty bad.

The basic premise is that a porn site was set up with links to movies with pdp’s Quicktime backdoor in them. When people get infected it changes their MySpace pages to include the movie and so it propagates. Nasty. As I said, I think there are more of these things to come.

2 Responses to “Quicktime XSS Worm Hits Myspace”

  1. Quicktime XSS Worm Hits Myspace of Myspace Html Codes Blog Says:

    […] Original post by RSnake for Myspace News Quicktime XSS Worm Hits Myspace […]

  2. pdp Says:

    I guess the next thing will be QuickTime Media Links because they can mimic any type of media format.

    http://www.gnucitizen.org/blog/backdooring-mp3-files/

Respond here or Discuss On the Forums