Twitter bugged by force-follow error

Twitter bugged by force-follow error

Dylan Bushell-Embling  |   May 11, 2010
telecomseurope.net
Thumbnail: 
Twitter has scrambled to close a programming loophole that allowed users to add any other site member as a follower without their permission.
 
The company said it had fixed the bug that had permitted a user to “force” other users to follow them.
 
It had to temporarily reset all followers and following numbers while the bug was closed.  
 
The loophole, discovered by a Turkish user and publicised by Gizmodo writer John Herrman, let users add any user as a follower with only two words - accept <username> - via the main Twitter web interface.
 
Herrman said he had used the bug to force US talk show host Oprah Winfrey to follow his Twitter feed.
 
The intended function of the accept command was to provide people with protected twitter accounts the option of accepting follow requests via console commands.
 

But it is surprising that a command with such wide-reaching applications had lain unpatched – and unnoticed – for so long.

Dylan Bushell-Embling

Add comment

The content of this field is kept private and will not be shown publicly.
  • Web page addresses and e-mail addresses turn into links automatically.
  • Allowed HTML tags: <a> <em> <strong> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd> <a> <p> <span> <div> <h1> <h2> <h3> <h4> <h5> <h6> <img> <img /> <map> <area> <hr> <br> <br /> <ul> <ol> <li> <dl> <dt> <dd> <table> <tr> <td> <em> <b> <u> <i> <strong> <font> <del> <ins> <sub> <sup> <quote> <blockquote> <pre> <address> <code> <cite> <embed> <object> <strike> <caption>
  • Lines and paragraphs break automatically.
  • Use <!--pagebreak--> to create page breaks.

More information about formatting options

Frontpage Content by Category

Don Sambandaraksa
Was government right to crack down on smartphone app?
Tony Poulos
Behemoth struggles to keep pace with rate of Web change

Frontpage Content by Category with Image

Accident at Christmas tree hanging