428
Sunday night (lemmy.world)
submitted 1 year ago by idspisp0pd@lemmy.world to c/memes@lemmy.ml
you are viewing a single comment's thread
view the rest of the comments
[-] Redjard@lemmy.dbzer0.com 10 points 1 year ago* (last edited 1 year ago)

Someone pulled off a js injection attack, where they put javascript into some comments or messages that would get executed by others seeing it in the web interface. The js sent the session cookies to the attackers, who got some admin sessions that way and took over lemmy.world for a bit. Given they only got the logged in session on the webinterface the damage was likely contained (i.e. no data stolen for example)

this post was submitted on 10 Jul 2023
428 points (97.6% liked)

Memes

45530 readers
1798 users here now

Rules:

  1. Be civil and nice.
  2. Try not to excessively repost, as a rule of thumb, wait at least 2 months to do it if you have to.

founded 5 years ago
MODERATORS