New Twitter Worm - Outbreak during Easter
F-Secure reports that the new Twitter worm is designed to infect as many folks as possible in spreading without a damaging payload. The capability to harm systems could change and hopefully these attacks will be stopped. For protection, update AV signatures and avoid any message containing the keyword "Stalkdaily" (and don't go to the website) as noted below.
Ongoing problems at Twitter
http://www.f-secure.com/weblog/archives/00001654.html
Twitter Worm Outbreak during Easter
http://www.f-secure.com/weblog/archives/00001653.html
QUOTE: Twitter administrators don't seem to be able to shut down the various XSS / CSRF worms that have been plaguing the service over the weekend. The actual problems to end users haven't been devastating - so far. Most of the Twitter worms simply modify people's profiles to infect more users. However, attacks like these could be much worse if the attackers would incorporate nastier attacks, such as browser exploits.
Wily Weekend Worms
http://blog.twitter.com/2009/04/wily-weekend-worms.html
QUOTE: On a weekend normally reserved for bunnies, a worm took center stage. A computer worm is a self-replicating computer program sometimes introduced by folks with malicious intent to do some harm to a network. Please note that no passwords, phone numbers, or other sensitive information was compromised as part of these attacks.
McAfee - Twettir Worm (move to DAT 5583)
http://vil.nai.com/vil/content/v_154580.htm
QUOTE: S/Twettir is the detection for a JavaScript that exploits a cross site scripting vulnerability in Twitter to infect other user profiles. This worm sends messages to all contacts containing any of the following strings:
AVOID THESE MESSAGES
* Dude, www.StalkDaily.com is awesome. What's the fuss?
* Join www.StalkDaily.com everyone!
* Woooo, www.StalkDaily.com :)
* Virus!? What? www.StalkDaily.com is legit!
* Wow...www.StalkDaily.com
* @twitter www.StalkDaily.com
* Twitter has been hacked !!!
* Twitter worm, read here
* StalkDaily worm on Twitter, more info
* HOWTO: Remove StalkDaily.com Auto-Tweets From Your Infected Twitter Profile | Twittercism
* #Stalkdaily virus runs riots on twitter. Learn how to remove it