Newsvine
  • Welcome
  • Help
  • Report Bug
  • Conversation Tracker
  • Your Column
  • Replies
  • Friends
Type Comments Since You Last CheckedArticle Source Last Checked Stop Tracking All Clear Tracking All
Advertise | AdChoices
Log In | Register
Close the Login Panel
Existing users log in below. New users please register for a free account.

New Users:

Existing Users:

E-Mail:
Password:
Forgot Password?
Please enter the e-mail address or domain name you registered with:
E-Mail/Domain:
Back to Login
Log Out
  • Top News
  • Local News
  • World
  • U.S.
  • Sports
  • Politics
  • Tech
  • Entertainment
  • Science
  • Business
  • Health
  • Odd News
  • More
    • Arts
    • Education
    • Environment
    • Fashion
    • History
    • Home & Garden
    • Not News
    • Religion
    • Travel
What is Newsvine?

Updated continuously by citizens like you, Newsvine is an instant reflection of what the world is talking about at any given moment.

Get a Free Account
Help
Fun Stuff
  • Your Clippings
  • Leaderboard
  • E-Mail Alerts
  • Top of the Vine
  • Newsvine Live
  • Newsvine Archives
  • The Greenhouse
  • Recommended Articles
  • Wall of Vineness
Put a Seed Newsvine link on your own site

Hack into Obama campaign site exploited a coding flaw

Wed Apr 23, 2008 6:53 PM EDT
technology, obama, barack-obama, site, techbit, hacked
Jordan Robertson, AP Technology Writer
Advertise | AdChoices

SAN JOSE — A simple flaw in the coding of Sen. Barack Obama's Web site led to a hacking switcheroo of presidential proportions just days before the important Pennsylvania primary.

Some supporters who tried to visit the community blogs section of Obama's site started noticing late last week they were being redirected to Sen. Hillary Rodham Clinton's official campaign site.

Security researchers said a hacker exploited a so-called "cross-site scripting" vulnerability in Obama's Web site to engineer the ruse.

Netcraft Ltd. said the hacker injected code into certain pages in the section — code that was then executed when subsequent visitors tried to view the community blogs section. The vulnerability has since been fixed.

While the hack appears to have been a prank, researchers said the breach underscored that candidates risk exposing their supporters to computer viruses and identity theft if they don't secure their Web sites. For instance, a similar mechanism could be employed to redirect campaign site users to a site that steals personal information from visitors.

"With people closely watching the heated contest to determine the next U.S. president, you can bet that this won't be the last time such attacks happen," Symantec Corp. researcher Zulfikar Ramzan wrote on the company's official blog.

Neither campaign responded to e-mail messages seeking comment.

The community blogs feature is working normally again this week. The link that took visitors to Clinton's site now directs visitors to the appropriate page, which is populated with blog postings from Obama supporters around the country.

___

On the Net:

http://www.barackobama.com

http://www.hillaryclinton.com

© 2008 The Associated Press. All rights reserved. This material may not be published, broadcast, rewritten or redistributed.
  • Enjoy this article? Help vote it up the 'Vine.

Back To Top | Front Page

Published to:

  • Jordan Robertson's Column, All of Newsvine
  • Groups: none
  • Regions: United States , San Francisco/Oakland/San Jose
  • Public Discussion (0)
Leave a Comment:
You're in Easy Mode. If you prefer, you can use XHTML Mode instead.
You're in XHTML Mode. If you prefer, you can use Easy Mode instead.
(XHTML tags allowed - a,b,blockquote,br,code,dd,dl,dt,del,em,h2,h3,h4,i,ins,li,ol,p,pre,q,strong,ul)
Newsvine Privacy Statement
As a new user, you may notice a few temporary content restrictions. Click here for more info.
FUN STUFF:
  • Leaderboard |
  • E-Mail Alerts |
  • Top of the Vine |
  • Newsvine Live |
  • Newsvine Archives |
  • The Greenhouse
COMPANY STUFF:
  • Code of Honor |
  • Company Info |
  • Contact Us |
  • Jobs |
  • User Agreement |
  • Privacy Policy |
  • About our ads
LEGAL STUFF:
  • © 2005-2012 Newsvine, Inc. |
  • Newsvine® is a registered trademark of Newsvine, Inc. |
  • Newsvine is a property of msnbc.com