TweetDeck

TweetDeck

A newly discovered vulnerability in TweetDeck for Chrome is allowing attackers to remotely execute javascript code through an unpatched vulnerability. Users have reported seeing random pop-up windows reading “Yo!” or “Please close now TweetDeck [sic], it is not safe.” The vulnerability is believed to be confined to web version of TweetDeck, but other users have reported similar attacks in TweetDeck’s Windows app. Twitter says that they have fixed the vulnerability, and users can apply the fix by logging out of TweetDeck and logging back in. We are still in the process of confirming the fix, and will update with any results. Researchers have reported XSS problems from TweetDeck in the past, most notably from Mikko Hypponen in 2011, but developers reported the vulnerability as fixed the following day, and most believed it to be a closed issue.

Read the full story at The Verge.

About Shelly Palmer

Shelly Palmer is the Professor of Advanced Media in Residence at Syracuse University’s S.I. Newhouse School of Public Communications and CEO of The Palmer Group, a consulting practice that helps Fortune 500 companies with AI strategy, implementation and governance, as well as technology, media and marketing. Named one of LinkedIn’s Top Voices in Technology, he is a bestselling author, covers tech and business for Fox 5’s Good Day New York, is a regular commentator on CNN, and writes the popular daily business blog Think About This. Follow @shellypalmer or visit shellypalmer.com.

Tags

Categories

PreviousThe Alamo Drafthouse Cinema Chain Bans Google Glass NextEnterprise Health Care Can Be Fixed With Big Data