Messages are spreading virally exploiting the cross-site-scripting (XSS) vulnerability without the consent of users. Victims include Sarah Brown, wife of the former British Prime Minister. Her Twitter page has been messed with in an attempt to redirect visitors to a hardcore porn site based in Japan. She has posted a warning on her Twitter page: This twitter feed has something very odd going on! Read more in my article on the Naked Security website. Follow Graham Cluley on Twitter to read more of the exclusive content we post.”]
Source: https://grahamcluley.com/twitter-onmouseover-security-flaw-widely-exploited/