The Ruwiki Sleeper: How a Slumbering JavaScript Worm Paralyzed Wikipedia’s Global Infrastructure
ID: 3345c0e1-5832-558e-b9d9-f26e576fd952
STIX ID: report--3345c0e1-5832-558e-b9d9-f26e576fd952
Feed Name: securityonline.info
Threat Score
During a security diagnostic, Wikimedia inadvertently executed a long-dormant, worm-like malicious JavaScript originating from the Russian Wikipedia that self-propagated and compromised numerous administrator accounts and modified Meta-Wiki content; the Foundation placed affected projects in read-only mode, removed the code, remediated the vulnerability, and found no evidence of user-data exfiltration.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
