Movatterモバイル変換


[0]ホーム

URL:


Jump to content
WikipediaThe Free Encyclopedia
Search

Samy (computer worm)

From Wikipedia, the free encyclopedia

Samy (also known asJS.Spacehero) is across-site scriptingworm (XSS worm) that was designed to propagate across thesocial networking siteMySpace bySamy Kamkar. Within just 20 hours[1] of its October 4, 2005 release, over one million users had run the payload[2] making Samy the fastest-spreadingvirus of all time.[3]

The message on a victim's profile

The worm itself was relatively harmless; it carried apayload that would display the string "but most of all, samy is my hero" on a victim's MySpace profile page as well as send Samy a friend request. When a user viewed that profile page, the payload would then be replicated and planted on their own profile page continuing the distribution of the worm. MySpace has since secured its site against the vulnerability.[1]

Samy Kamkar, the author of the worm, was raided by theUnited States Secret Service and Electronic Crimes Task Force in 2006 for releasing the worm.[4] He entered aplea agreement on January 31, 2007, to afelony charge.[5] The action resulted in Kamkar being sentenced to three years'probation with only one (remotely-monitored) computer and no access to the Internet for life (this provision was later struck off by a judge), 90 days'community service, and $15,000–$100,000,000 in restitution, as well as a 20-year suspended prison sentence, as directly reported by Kamkar himself on "Greatest Moments in Hacking History" byVice Media's video website,Motherboard.[6]

References

[edit]
  1. ^ab"MySpace Worm Explanation".Samy.pl. Retrieved2015-12-25.
  2. ^"Cross-Site Scripting Worm Floods MySpace".Slashdot. 14 October 2005. Retrieved2015-12-25.
  3. ^"CROSS-SITE SCRIPTING WORMS AND VIRUSES : The Impending Threat and the Best Defense"(PDF).Net-security.org. Archived fromthe original(PDF) on 2011-01-04. Retrieved2015-12-25.
  4. ^"[Owasp-losangeles] OWASP LA".Lists.owasp.org. Archived fromthe original on 2016-06-03. Retrieved2015-12-25.
  5. ^Mann, Justin (2007-01-31)."MySpace speaks about Samy Kamkar's sentencing". Techspot.com.
  6. ^Motherboard (2016-06-01),Greatest Moments in Hacking History: Samy Kamkar Takes Down Myspace,archived from the original on 2021-12-21, retrieved2016-06-02

External links

[edit]
Hacking in the 2000s
Incidents
2004
2005
2007
2008
2009
Groups
Individuals
Darknets
Hacking forums
Vulnerabilities
discovered
Malware
2000
2001
2002
2003
2004
2005
2006
2007
2008
2009
Retrieved from "https://en.wikipedia.org/w/index.php?title=Samy_(computer_worm)&oldid=1321265235"
Categories:
Hidden categories:

[8]ページ先頭

©2009-2025 Movatter.jp