Video of Twitter being hacked: tweets without Captcha

In: Web

Posted by Geries Handal

7 Jan 2009

Here is the video of Twitter being hacked by GMZ:

Apparently GMZ (the hacker and a 18 student) used a dictionary attack to login in into a Admin account. How was this possible? Well if you try to log in into Gmail or Hotmail and failed for x number of time, then you are ask to confirm that you are human using captcha. Twitter didn’t have this feature, therefore anybody (in this case GMZ) ran a script overnight and guessed the password by brute force.

Like I said it before, twitter needs to go back to beta. By the way, if your site doesn’t have something from preventing this attack, you know now what can happened.

Want to read more about the topic, here are some links to:

The Register and Wired

No TweetBacks yet. (Be the first to Tweet this post)
Share and Enjoy:
  • TwitThis
  • del.icio.us
  • StumbleUpon
  • Digg
  • Reddit
  • Technorati
  • Facebook
  • Google Bookmarks
  • email

Comment Form

About this blog

A personal blog where I write about my current projects, work and interests. The posts are a reflection on my current self, varying over time, since change is the only constant.

Welcome to G To The Square, my thoughts on ICT, Business and Life... in a Square.