<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Explanation of How My Twitter Account Was Hacked</title>
	<atom:link href="http://suewaters.com/2009/04/12/explanation-of-how-my-twitter-account-was-hacked/feed/" rel="self" type="application/rss+xml" />
	<link>http://suewaters.com/2009/04/12/explanation-of-how-my-twitter-account-was-hacked/</link>
	<description></description>
	<lastBuildDate>Wed, 17 Mar 2010 23:08:20 -0400</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Tweets that mention Explanation of How My Twitter Account Was Hacked &#124; Sue Waters Blog -- Topsy.com</title>
		<link>http://suewaters.com/2009/04/12/explanation-of-how-my-twitter-account-was-hacked/comment-page-1/#comment-3294</link>
		<dc:creator>Tweets that mention Explanation of How My Twitter Account Was Hacked &#124; Sue Waters Blog -- Topsy.com</dc:creator>
		<pubDate>Fri, 06 Nov 2009 04:33:27 +0000</pubDate>
		<guid isPermaLink="false">http://aquaculturepda.edublogs.org/?p=1110#comment-3294</guid>
		<description>[...] This post was mentioned on Twitter by Mitch Powell, Rebecca Ruhlman. Rebecca Ruhlman said: Explanation of How My Twitter Account Was Hacked: http://bit.ly/2UCLyE via @addthis This seems to be the consensus of what&#039;s going around. [...]</description>
		<content:encoded><![CDATA[<p>[...] This post was mentioned on Twitter by Mitch Powell, Rebecca Ruhlman. Rebecca Ruhlman said: Explanation of How My Twitter Account Was Hacked: <a href="http://bit.ly/2UCLyE" rel="nofollow">http://bit.ly/2UCLyE</a> via @addthis This seems to be the consensus of what&#39;s going around. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Gold Coins</title>
		<link>http://suewaters.com/2009/04/12/explanation-of-how-my-twitter-account-was-hacked/comment-page-1/#comment-3104</link>
		<dc:creator>Gold Coins</dc:creator>
		<pubDate>Wed, 29 Jul 2009 16:53:38 +0000</pubDate>
		<guid isPermaLink="false">http://aquaculturepda.edublogs.org/?p=1110#comment-3104</guid>
		<description>I do not think hacking is good because your giving huge problem to users. I hope this kid will stop hacking and to those people doing the same thing.</description>
		<content:encoded><![CDATA[<p>I do not think hacking is good because your giving huge problem to users. I hope this kid will stop hacking and to those people doing the same thing.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jielea</title>
		<link>http://suewaters.com/2009/04/12/explanation-of-how-my-twitter-account-was-hacked/comment-page-1/#comment-2913</link>
		<dc:creator>Jielea</dc:creator>
		<pubDate>Sun, 03 May 2009 01:02:26 +0000</pubDate>
		<guid isPermaLink="false">http://aquaculturepda.edublogs.org/?p=1110#comment-2913</guid>
		<description>I have account in Twitter and i am afraid that my account will get hacked.  This 17 year old should think about the damage it will give to users. “I am aware of the attack and yes I am behind this attack.” Is this really true?  He feel proud about this.  This is not cool.</description>
		<content:encoded><![CDATA[<p>I have account in Twitter and i am afraid that my account will get hacked.  This 17 year old should think about the damage it will give to users. “I am aware of the attack and yes I am behind this attack.” Is this really true?  He feel proud about this.  This is not cool.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sue Waters</title>
		<link>http://suewaters.com/2009/04/12/explanation-of-how-my-twitter-account-was-hacked/comment-page-1/#comment-2897</link>
		<dc:creator>Sue Waters</dc:creator>
		<pubDate>Sun, 19 Apr 2009 15:55:36 +0000</pubDate>
		<guid isPermaLink="false">http://aquaculturepda.edublogs.org/?p=1110#comment-2897</guid>
		<description>Hi Cait and Damon - just letting you both know I&#039;ve updated my post (again) to include Damon&#039;s post plus more explanation of the attacks including the latest on April 17.  

Unusual situation for me since I wouldn&#039;t normally update a post as I prefer writing a new post.  

PS I&#039;m not sure about you two but twitters lifting of the follower limit which has contributed to an increased number of daily twitter follower requests is really starting to annoy me.  Wish that twitter would make all our lives easier by including the users bio in the email.</description>
		<content:encoded><![CDATA[<p>Hi Cait and Damon &#8211; just letting you both know I&#8217;ve updated my post (again) to include Damon&#8217;s post plus more explanation of the attacks including the latest on April 17.  </p>
<p>Unusual situation for me since I wouldn&#8217;t normally update a post as I prefer writing a new post.  </p>
<p>PS I&#8217;m not sure about you two but twitters lifting of the follower limit which has contributed to an increased number of daily twitter follower requests is really starting to annoy me.  Wish that twitter would make all our lives easier by including the users bio in the email.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sue Waters</title>
		<link>http://suewaters.com/2009/04/12/explanation-of-how-my-twitter-account-was-hacked/comment-page-1/#comment-2894</link>
		<dc:creator>Sue Waters</dc:creator>
		<pubDate>Sat, 18 Apr 2009 09:33:53 +0000</pubDate>
		<guid isPermaLink="false">http://aquaculturepda.edublogs.org/?p=1110#comment-2894</guid>
		<description>@Cait technically speaking my non-geek status is in question because I was able to easily understand his post that was well written.  

Would love to update my post however keeping up with my work load while traveling is hard.  Writing a post for The Edublogger will be my top priority when I get a second.

@Damon yes was watching Twitter earlier and noticed some talk about another worm.  At the moment I&#039;ll stick to just using 3rd party applications for following people.  I wouldn&#039;t like to be twitter&#039;s technical team having to deal with this security issues.</description>
		<content:encoded><![CDATA[<p>@Cait technically speaking my non-geek status is in question because I was able to easily understand his post that was well written.  </p>
<p>Would love to update my post however keeping up with my work load while traveling is hard.  Writing a post for The Edublogger will be my top priority when I get a second.</p>
<p>@Damon yes was watching Twitter earlier and noticed some talk about another worm.  At the moment I&#8217;ll stick to just using 3rd party applications for following people.  I wouldn&#8217;t like to be twitter&#8217;s technical team having to deal with this security issues.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Damon</title>
		<link>http://suewaters.com/2009/04/12/explanation-of-how-my-twitter-account-was-hacked/comment-page-1/#comment-2893</link>
		<dc:creator>Damon</dc:creator>
		<pubDate>Sat, 18 Apr 2009 09:25:59 +0000</pubDate>
		<guid isPermaLink="false">http://aquaculturepda.edublogs.org/?p=1110#comment-2893</guid>
		<description>On a somewhat depressing side note, another variant of this worm hit Twitter on Friday (4/17). It only affected people with Internet Explorer and Twitter cleaned it up within a couple of hours, but simple evidence that security is an ongoing challenge.</description>
		<content:encoded><![CDATA[<p>On a somewhat depressing side note, another variant of this worm hit Twitter on Friday (4/17). It only affected people with Internet Explorer and Twitter cleaned it up within a couple of hours, but simple evidence that security is an ongoing challenge.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Cait</title>
		<link>http://suewaters.com/2009/04/12/explanation-of-how-my-twitter-account-was-hacked/comment-page-1/#comment-2892</link>
		<dc:creator>Cait</dc:creator>
		<pubDate>Sat, 18 Apr 2009 09:19:31 +0000</pubDate>
		<guid isPermaLink="false">http://aquaculturepda.edublogs.org/?p=1110#comment-2892</guid>
		<description>Damon explains it very well, so your non-geek status is not in question :)

I think you can update your blog now.</description>
		<content:encoded><![CDATA[<p>Damon explains it very well, so your non-geek status is not in question <img src='http://suewaters.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>I think you can update your blog now.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sue Waters</title>
		<link>http://suewaters.com/2009/04/12/explanation-of-how-my-twitter-account-was-hacked/comment-page-1/#comment-2890</link>
		<dc:creator>Sue Waters</dc:creator>
		<pubDate>Fri, 17 Apr 2009 12:56:30 +0000</pubDate>
		<guid isPermaLink="false">http://aquaculturepda.edublogs.org/?p=1110#comment-2890</guid>
		<description>Hi Cait, thanks for the link it was an excellent article and while I&#039;m not a coder (as such) I know enough to be able to understand your explanation -- and yes would like to update the post :(

Thanks Damon for dropping past.  I did go over to your blog post and read it when Cait left the comment.  On the scale of 1-10 in terms of extreme --- this week has ranked as a 10 extreme week with minimal time :( .  Traveling for 10 days to present at workshops and connect up with people.  So it was fantastic that Cait dropped past to provide me an update with your post so that while I couldn&#039;t update my own post I was able to learn why what happened happened without having to research it myself.  

Was also nice of you to come past and explain it all in simpler terms.

PS don&#039;t either of you tell anyone I was able to understand the coding type talk in your post -- it will ruin my non-geek status LOL.</description>
		<content:encoded><![CDATA[<p>Hi Cait, thanks for the link it was an excellent article and while I&#8217;m not a coder (as such) I know enough to be able to understand your explanation &#8212; and yes would like to update the post <img src='http://suewaters.com/wp-includes/images/smilies/icon_sad.gif' alt=':(' class='wp-smiley' /> </p>
<p>Thanks Damon for dropping past.  I did go over to your blog post and read it when Cait left the comment.  On the scale of 1-10 in terms of extreme &#8212; this week has ranked as a 10 extreme week with minimal time <img src='http://suewaters.com/wp-includes/images/smilies/icon_sad.gif' alt=':(' class='wp-smiley' />  .  Traveling for 10 days to present at workshops and connect up with people.  So it was fantastic that Cait dropped past to provide me an update with your post so that while I couldn&#8217;t update my own post I was able to learn why what happened happened without having to research it myself.  </p>
<p>Was also nice of you to come past and explain it all in simpler terms.</p>
<p>PS don&#8217;t either of you tell anyone I was able to understand the coding type talk in your post &#8212; it will ruin my non-geek status LOL.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Damon</title>
		<link>http://suewaters.com/2009/04/12/explanation-of-how-my-twitter-account-was-hacked/comment-page-1/#comment-2871</link>
		<dc:creator>Damon</dc:creator>
		<pubDate>Fri, 17 Apr 2009 03:00:57 +0000</pubDate>
		<guid isPermaLink="false">http://aquaculturepda.edublogs.org/?p=1110#comment-2871</guid>
		<description>Hi Sue - Damon from the blog mentioned above ^^^^ :)

As far as I know, Twitter finished addressing this issue on Monday of this week. As you saw, there were a few different versions of the worm going around. But Twitter seems to have contained them all at this point.

A summary of what happened is that on your profile you have several fields you can fill in - bio, name, url, etc. While that information is usually benign content, the worm author apparently figured out he could put some nasty code in there that would execute when you visited a hacked profile. Fortunately (it could have been worse), all the code did was post an update as you and then update your profile to include the nasty code as well.

Typically that type of code shouldn&#039;t be allowed in those fields, but Twitter made an error somewhere that allowed somebody to put extra things in those fields besides your name and url. As mentioned, I think they&#039;ve got it fixed up at this point.

Hope this helps!

Damon</description>
		<content:encoded><![CDATA[<p>Hi Sue &#8211; Damon from the blog mentioned above ^^^^ <img src='http://suewaters.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>As far as I know, Twitter finished addressing this issue on Monday of this week. As you saw, there were a few different versions of the worm going around. But Twitter seems to have contained them all at this point.</p>
<p>A summary of what happened is that on your profile you have several fields you can fill in &#8211; bio, name, url, etc. While that information is usually benign content, the worm author apparently figured out he could put some nasty code in there that would execute when you visited a hacked profile. Fortunately (it could have been worse), all the code did was post an update as you and then update your profile to include the nasty code as well.</p>
<p>Typically that type of code shouldn&#8217;t be allowed in those fields, but Twitter made an error somewhere that allowed somebody to put extra things in those fields besides your name and url. As mentioned, I think they&#8217;ve got it fixed up at this point.</p>
<p>Hope this helps!</p>
<p>Damon</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Cait</title>
		<link>http://suewaters.com/2009/04/12/explanation-of-how-my-twitter-account-was-hacked/comment-page-1/#comment-2870</link>
		<dc:creator>Cait</dc:creator>
		<pubDate>Fri, 17 Apr 2009 02:45:04 +0000</pubDate>
		<guid isPermaLink="false">http://aquaculturepda.edublogs.org/?p=1110#comment-2870</guid>
		<description>Now this may be heavy going (for those who don&#039;t read code), but it&#039;s an excellent port-mortem analysis. 

http://dcortesi.com/2009/04/11/twitter-stalkdaily-worm-postmortem/</description>
		<content:encoded><![CDATA[<p>Now this may be heavy going (for those who don&#8217;t read code), but it&#8217;s an excellent port-mortem analysis. </p>
<p><a href="http://dcortesi.com/2009/04/11/twitter-stalkdaily-worm-postmortem/" rel="nofollow">http://dcortesi.com/2009/04/11/twitter-stalkdaily-worm-postmortem/</a></p>
]]></content:encoded>
	</item>
</channel>
</rss>
