[AI] Beware of this

namdeo jadhav.namdeo at gmail.com
Mon Sep 27 12:40:05 EDT 2010

About Bom Sabado - Orkut Virus ......!!

Google's social networking website Orkut has been attacked by virus called Bom Sabado on Saturday morning, which is a big treat for orkut .Bom sabado is a Portuguese world it meansGood Saturday in English. 

Bom Sabado is an orkut virus affecting profiles of many. Those who are affected by this virus are advised to change password and security question. Log out immediately and also clear the cookies and history.

Users are also advised not to open Orkut account until the problem solved. Orkut had just last month announced new updates to the website. It's a second time Orkut got affected by this kind of viruses. The same virus has hit Orkut last Feb also.
A few hours back, the Bom Sabado virus seems to have started and now it is all over orkut scraps that spreading from friend to friends. It is an auto generated message which is filing your scrapebooks. The scraps come from the friend list and it comes just like any other normal orkut scraps. Users are also advised not to open such scraps. The bug is hitting your cookies and automatically sending messages to your friend list.
If anyone reads this scrap even in their profile, their cookies are also stoled and so they are also posting scrap automatically to their friend list same scrap as bomb something like.
Orkut officials have not clear yet that the Bom Sabado is a virus or not. In week, this is a second XSS attack on a social networking website. The popular microblogging website Twitter was also attacked by a computer worm created by Norwegian. Twitter was received an XSS exploit, the attack, which emerged and was shut down within hours Tuesday morning and involved a XSS flaw that allowed users to run JavaScript programs on other computers.
" So do not login to your orkut account, 
" If you want to change password, use this link www.google.com/accounts/ 
" Do not visit any profile on Orkut till this script is blocked 
" Clear your cookies and cache right away and change your password and security question. 

More information about the AccessIndia mailing list