solarbird: (Default)
[personal profile] solarbird
Got mail back from the tech contact alias at the domain where the "this is interesting" LJ virus going around is hosted. To quote the reply:
Date: Sat, 12 Jun 2004 13:34:53 -0400
From: "Rev. Jeffrey Paul" <sneak@datavibe.net>
Subject: Re: Probable proof-of-concept for a simple spam robot

On Sat, Jun 12, 2004 at 10:31:17AM -0700, Dara's Commercial Account wrote:
> It looks like one of your users is hosting a proof-of-concept
> Livejournal virus. When activated, it posts itself to the livejournal
> of the user who clicks on it. Users who click on it there (it's a
> social engineering virus) find it posted to their own journals. The
> user is collecting hit data via a webbug as well. It is clear to me
> that this is an attempt to build a spam robot targeting livejournal.
> Please delete this user's spam data before they can use it.

Yeah, that's mine.

If it's clear to you that it's an attempt at a spambot, then please go and
drink bleach.

Thank you, drive through.

-j

--
--------------------------------------------------------
Rev. Jeffrey Paul -datavibe- sneak@datavibe.net
aim:x736e65616b pgp:0x15FA257E phone:8777483467
70E0 B896 D5F3 8BF4 4BEE 2CCF EF2F BA28 15FA 257E
--------------------------------------------------------

Date: 2004-06-12 10:57 am (UTC)
avram: (Default)
From: [personal profile] avram
So he’s at least two kinds of asshole.

Date: 2004-06-12 11:01 am (UTC)
From: [identity profile] starfallz.livejournal.com
Which one is it? The russian one or the "this is interesting" one?

Date: 2004-06-12 12:49 pm (UTC)
From: [identity profile] marzipan-pig.livejournal.com
I posted a link to this in a friend's journal who had it; I hope that is ok?

Date: 2004-06-12 02:07 pm (UTC)
From: [identity profile] starsongky.livejournal.com
I hope this asshat gets reported to the LJ staff - a lot. Maybe they can fix whatever hole he's exploiting.

Date: 2004-06-12 03:48 pm (UTC)
From: [identity profile] firni.livejournal.com
So, do you think Ray clicked it on purpose or not? He's the only one on my friends list to have that up there.

Date: 2004-06-12 04:04 pm (UTC)
From: [identity profile] banner.livejournal.com
I hope you forwarded that complaint to the rest of the staff, and his response as well. That guy is an ass and shouldn't be working for LJ.

Date: 2004-06-13 08:26 am (UTC)
From: [identity profile] gazerwolf.livejournal.com
This guy is getting his jollies off of it...

http://sneak.datavibe.net/blog/

Has several entries about it...including people congratulating the twit.

Date: 2004-06-14 07:13 am (UTC)
From: [identity profile] backrubbear.livejournal.com
What I can't figure out is why you came to the conclusion that this was for building a spam robot.

Date: 2004-06-14 09:16 am (UTC)
From: [identity profile] backrubbear.livejournal.com
You don't even need a popup - you need only to create a frame of zero or one pixel size and do everything inside that. You can even put a "legitimate" meme in there. You can even code around the LJ cookies not being present to prevent warnings about not having the password on submisssion.

The problem with doing the community spam is that you'd need to do at least two HTTP operations - the "fetch friends list", a parser and then a form.submit. I don't think you can actually do both simultaneously but I wouldn't bet on it.

January 2026

S M T W T F S
    1 23
4 56 7 8 910
1112 131415 1617
1819202122 2324
25262728293031

Most Popular Tags