The popular social media service Twitter is being targeted by a new attack seeking access to user accounts to send spam via direct messages.
At first, the attack was thought to be the result of "phishing" or social engineering asking people to enter their username and password details into bogus sites masquerading as Twitter's website, possibly done by utilizing a cross-scripting vulnerability.

















